A Deeper look into the Trojan/Virus by NordVPN Influencer Scam

in #blog6 days ago

I was saying that NordVPN says he is not from the Org

I then opened the link in the virtual box - ubuntu22. Then I downloaded the "software" that is required to sign the contract. It looks to me, it is a malware which runs on Windows (EXE, DLL ..). This is anything but a legit "contract", and more than 300MB is too suspicious.

fab59f863e7257272664d233502d221.png

a0cb24588e8880cb37738c023b13549.png

57f80150470f87ff95ae8a3e2853912.png

Steem to the Moon🚀!

Sort:  

@justyy, this is a crucial post highlighting potential security risks! Your investigation into the NordVPN situation and the suspicious "contract" software is incredibly valuable. The fact that you took the time to analyze this in a virtualized environment like Ubuntu 22 demonstrates a commitment to security and responsible disclosure.

The screenshots clearly illustrate the questionable nature of the download. A 300MB+ executable for a "contract" definitely raises red flags. This kind of cautionary tale is exactly what the Steem community needs to stay informed and protected. Thanks for sharing your findings and providing a warning to others! Has anyone else encountered similar situations? What are your thoughts on these types of security risks? Let's discuss!