#Mystery malware targets Call of Duty cheaters, stealing their Bitcoin

The malware database vx-underground has issued a warning about a newly discovered info-stealing malware targeting video gamers, particularly those who utilize cheating software. This malicious campaign has been reported to drain Bitcoin wallets of affected users.

According to a post on March 28th, vx-underground highlighted the emergence of an unidentified threat actor utilizing malware to steal login credentials and other sensitive information from individuals using pay-to-cheat video game software. The targets of these attacks include players who purchase cheating software.

The malware campaign has compromised over 4.9 million accounts belonging to Activision Blizzard users, as well as accounts on its game store Battle.net, a game-focused trading site called Elite PVPers, and cheat software markets such as PhantomOverlay and UnknownCheats.

Affected users have reported incidents of cryptocurrency theft, particularly from their Electrum BTC wallets, although the exact amount stolen is currently unknown.


PhantomOverlay disputed the reported number of hacked accounts on March 27th, citing many invalid logins in the database. However, it acknowledged the significant scale of the malware campaign, labeling it the largest infostealer malware campaign in gaming/cheating community history.

The malware's origins remain uncertain, with PhantomOverlay speculating it could have stemmed from a widely used program like a latency tool or VPN. While claiming insights into the source, they acknowledge challenges in proving suspicions due to the malware gang's sophistication.


Activision Blizzard acknowledged potential credential compromise from malware linked to unauthorized software downloads, affirming server security. They advised users to change passwords. PhantomOverlay detected fraudulent activity, reaching out to affected users and continuing to identify more victims. Activision Blizzard vowed to assist millions of infected users.

Source - cointelegraph.com

#CryptoNews🔒📰🚫