Malware News Vidar Stealer 2.0 distributed via fake game cheats on GitHub and Reddit

Khushal

Level 14
Thread author
Verified
Top Poster
Well-known
Apr 4, 2024
697
4,125
1,269

šŸ‘¾ Hundreds of GitHub repositories delivering malware to gamers under the guise of free game cheats were discovered by Acronis Threat Research Unit. Among the malware found is Vidar 2.0, a recently updated information stealer that has risen to popularity following the disruption of other leading infostealers.

Vidar 2.0 represents a substantial advancement: it has been fully rewritten from C++ to C, introduces polymorphic builds and multi-threaded execution and is distributed via trusted platforms like GitHub and Reddit, making detection and takedown harder.

Research authored by Eliad Kimhy and Darrel Virtusio provides a complete overview of this novel variant alongside an analysis of the broader attack vector.
 
The PowerShell loader performs multiple malicious operations. It adds a Windows Defender exclusion for a specified attacker-controlled directory. This will disable scanning of upcoming payloads dropped in that directory.
Would CLM stop this step?
 
  • Like
Reactions: lokamoka820
In light of this malware that steals sensitive information and leverages trusted platforms to gain credibility, the šŸ‘‰ recommendation is to avoid downloading ā€œfree cheatsā€ from unofficial sources and to always keep your antivirus/antimalware up to date.
 
  • Like
Reactions: lokamoka820
My advice, stop playing games, life is hard šŸ˜†
Dog Puppy GIF by FaZe Clan
 
  • HaHa
Reactions: lokamoka820