Microsoft Warns of New Malware, StilachiRAT, Targeting Crypto Wallets

March 21, 2025

2 minutes read

StilachiRAT

StilachiRAT: A Growing Threat to Cryptocurrency Users

Microsoft has identified StilachiRAT, a dangerous remote access trojan (RAT) designed to steal data from cryptocurrency wallets and web browsers. The malware actively scans Google Chrome for wallet extensions, targeting at least 20 digital wallets, including:

  • MetaMask
  • Trust Wallet
  • Phantom
  • Coinbase
  • BNB Chain
  • Bitget Wallet

Once it detects these wallets, StilachiRAT extracts credentials and configuration details, allowing attackers to drain funds from victims’ accounts.

DON’T MISS THIS: IMF Deal: Kenya Seeks New Agreement After Scrapping Latest

How StilachiRAT Steals Crypto Assets

This malware goes beyond simply scanning browser data. StilachiRAT also:

  • Monitors clipboard activity to steal copied cryptocurrency keys and passwords
  • Executes remote commands to control infected devices
  • Clears logs and manipulates registry settings for persistence
  • Uses anti-forensic techniques to evade detection
  • Collects detailed system data, including operating system details and active applications
  • Monitors Remote Desktop Protocol (RDP) sessions, allowing hackers to impersonate users

By combining these tactics, attackers can maintain long-term access to compromised systems, increasing the risk for crypto users.

Microsoft’s Security Recommendations

Although StilachiRAT is not yet widespread, Microsoft warns that proactive defense is crucial. The company advises users to:

  • Download software only from official sources
  • Enable Microsoft Defender real-time protection
  • Turn on cloud-delivered security
  • Utilize SmartScreen to block malicious websites

Crypto Industry Faces Persistent Cyber Threats

The cryptocurrency sector has always been a prime target for cybercriminals. Malware attacks and phishing scams continue to evolve, leading to major security breaches.

In one of the largest hacks to date, the $1.4 billion Bybit attack allegedly began with malware disguised as a fake stock investment platform. Similarly, cybercriminals have used social engineering tactics, such as fake job interviews, to distribute malware.

StilachiRAT’s command-and-control (C2) server allows hackers to launch various attacks, including:

  • System reboots
  • Credential theft
  • Application execution
  • Suspending the system
  • Manipulating Windows registry settings

With such advanced capabilities, StilachiRAT poses a serious threat to crypto holders and businesses.

Final Thoughts

Microsoft’s warning highlights the growing sophistication of malware targeting the crypto industry. Users must remain vigilant, implement strong security measures, and stay informed about emerging threats like StilachiRAT.

Share:
Subscribe
Notify of
guest
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Related Links

BOI Unveils 7% Loan Scheme for West African Women Entrepreneurs to Boost Trade

The Bank of Industry has announced that its Guaranteed Loan (GLO) scheme offering a 7 ...

Julius Berger Retains West Africa’s Top Construction Award for Second Consecutive Year

Julius Berger Nigeria Plc has retained its position as West Africa’s leading construction and infrastructure ...

Dozens Killed as Armed Fighters Launch Fresh Deadly Attacks in Central Mali

At least 30 people have been killed in fresh attacks carried out by suspected al-Qaeda-linked ...

France Seeks Stronger African Alliances at Kenya Summit After Setbacks in West Africa

France is set to intensify efforts to rebuild and expand its influence across Africa as ...

Features

African Union, West Africa Welcome UN Resolution Declaring Slave Trade Crime Against Humanity

The African Union has welcomed a landmark resolution by the United Nations General Assembly formally ...

Nigeria, Others Move to Launch ECOVISA to Ease Travel Across West Africa

Nigeria has joined Ghana, Senegal, Gambia, Sierra Leone, Côte d’Ivoire, Liberia, Togo and other West ...

Namibia Rejects Starlink Licence, Deepening Southern Africa Setback

Starlink, the satellite internet venture backed by Elon Musk, has suffered another setback in southern ...

ECOWAS, African Union Deepen Partnership on Infrastructure, Regional Integration

The President of the Economic Community of West African States (ECOWAS) Commission, Omar Alieu Touray, ...

Fayemi Pushes for Fairer Africa-West Deals, Urges Industrialisation and Tech Transfer

Former Ekiti State governor, Kayode Fayemi, has called for a major reset in Africa’s economic ...

ECOWAS Moves to Establish Regional Open Data Framework to Strengthen Digital Governance

The Economic Community of West African States (ECOWAS) has taken a major step toward improving ...

Youth in Oil-Rich Congo Struggle With Poverty, Seek Economic Change

  Despite being one of Africa’s major oil producers, the Republic of the Congo continues ...

World Bank Approves $137m Programme to Expand Broadband, Digital Jobs in West Africa

The World Bank Group has approved a $137 million regional programme aimed at expanding broadband ...

Latest News

Today in History

The average lead pencil will draw a line 35 miles long or write approximately 50,000 English words.  More than 2 billion pencils are manufactured each year in the United States. If these were laid end to end they would circle the world nine times.

Exchange Rate Per Dollar

AM Armenian Dram368.7698
GH Ghana Cedi11.4159
GM Gambian Dalasi73.4501
GN Guinea Franc8,781.36
NG Nigerian Naira₦1,370.09
CF CFA Franc BEAC564.3214
15 May · CurrencyRate · USD
CurrencyRate.Today
Check: 15 May 2026 09:45 UTC
Latest change: 15 May 2026 09:38 UTC
API: CurrencyRate
Disclaimers. This plugin or website cannot guarantee the accuracy of the exchange rates displayed. You should confirm current rates before making any transactions that could be affected by changes in the exchange rates.
You can install this WP plugin on your website from the WordPress official website: Exchange Rates🚀

YOUR THOUGHTS

Let us know what you think

Contact the People’s Paper with feedback on stories and how we could make wapress.africa even better!

newsletter image

Stay up to date with the latest from West Africa Press

Editorial feedback and complaints

Contact the public editor with feedback for our journalists, complaints, queries or suggestions about articles on WApress.

Subscribe Newsletter!

Be the first to receive our latest contents and more...

Need help?