• Live Crypto Prices
  • Crypto News
    • Worldwide
      • Bitcoin
      • Ethereum
      • Altcoin
      • Blockchain
      • Regulation
    • Australian Crypto News
  • Education
    • Cryptocurrency For Beginners
    • Where to Buy Cryptocurrency
    • Where to Store Cryptos
    • Cryptocurrency Tax in Australia 2021
No Result
View All Result
CryptoABC.net
No Result
View All Result

New Malware ‘Babadeda’ Is Targeting Crypto Users On Discord

November 30, 2021
in Australian Crypto News
Reading Time: 4min read
0 0
A A
0
New Malware ‘Babadeda’ Is Targeting Crypto Users On Discord
0
SHARES
36
VIEWS
ShareShareShareShareShare

A highly sophisticated and very dangerous crypter is loose in the crypto community. It has been named the Babadeda crypter and is targeting NFT and DeFi users.

Discord malware campaign targets crypto and NFT communities

A new malware campaign on Discord uses the Babadeda crypter to hide malware that targets the crypto, NFT, and DeFi communities.

⚠️PHISHING ON DISCORD
✅PROTECT YOUR PRIVACY

Full articlehttps://t.co/N2B1RyYfEZ pic.twitter.com/xkZ8C3idwv

— Skipper (@skipper_xrp) November 26, 2021

Babadeda translates to “Grandma-Grandpa” – a Russian language placeholder used by the crypter itself, giving away hints to its origin. The malware is targeting cryptocurrency enthusiasts on the popular crypto community chat app Discord. Since May this year, bad actors have been fooling users into downloading Babadeda, disguised as a legitimate app.

The scammers are able to lure victims by taking over popular crypto channels in the NFT and DeFi communities on Discord, posing very convincingly as the official Admin. Users are being fooled into clicking on and downloading a malicious file that will install the crypter on their machine. The code is so sneaky that it is able to evade detection by most anti-malware software, successfully hiding within the computer’s files by masquerading as a known application.

Once on a victim’s machine, masquerading as a known application with a complex obfuscation also means that anyone relying on signature-based malware effectively has no way of knowing Babadeda is on their machine – or of stopping it from executing.

Morphisec blog

Links to Babadeda Posted as Official Announcements

The threat actor sends users a private message or posts a link through the Admin chat inviting them to download an application related to the channel. Below is an example of the Discord Channel for blockchain-based action-adventure game Mines of Dalarnia, where a link to Babadeda has been posted as an official announcement, appearing to come from the channel’s own Admin account.

If a user clicks on the provided URL, they will be rerouted to a fake decoy site whose branding is almost exactly the same as that of the project it is imitating. The attackers use very advanced measures to ensure the delivery chain looks legitimate, even to the most technically aware users. Through cybersquatting, they can make the URLs of the decoy websites resemble those of genuine ones. They even use SSL certificates generated by Let’s Encrypt to further appear completely legitimate and add to the deception.

When the user clicks on “download app” from the decoy site, the malicious installer embeds the Babadeda crypter onto the victim’s machine. Then it’s game over.

Discord is a Dangerous Place for the Average Degen

So many ways to lose crypto including:
🚨 DNS attack like Cream below
🚨 Google ads to cloned sites asking for seed phrase
🚨 DMs in Discord — 99% are fake
🚨 Cloned sites asking to “download app” installing malware
🚨 Cloned site asking for infinite approvals to drain wallet https://t.co/3kSDZyxOzh

— DeFi Dad ⟠ defidad.eth ≡🦇🔈 (@DeFi_Dad) March 15, 2021

The takeaway: be careful and go slowly. Discord is rife with scams like this. You can have all the fancy malware protection money can buy, but if you accidentally click on a dodgy link and install a malicious application on your computer, you could leave yourself open to an attacker who can empty the contents of your crypto wallet quicker than you can figure out what happened.

In related news, two weeks ago Crypto News Australia reported on the Fake MetaMask Google Ad scam, a phishing/ad scam directing victims to the fake site maskmeta, instead of the official metamask.io url. It’s another cautionary tale.

Share this article

Join in the conversation on this article’s Twitter thread.

Disclaimer:
The content and views expressed in the articles are those of the original authors own and are not necessarily the views of Crypto News. We do actively check all our content for accuracy to help protect our readers. This article content and links to external third-parties is included for information and entertainment purposes. It is not financial advice. Please do your own research before participating.


Credit: Source link

ShareTweetSendPinShare
Previous Post

SnowdogDAO Potentially Rugged For $30 Million

Next Post

DeFi Analytics Platform DappRadar Set To Launch Own Token And Dapp Store

Next Post
Bitcoin Struggles, Ethereum Inches Higher, DOGE and SHIB Rally

Bitcoin Struggles, Ethereum Inches Higher, DOGE and SHIB Rally

You might also like

The Multi-Year XRP Bull Market That Could Change Everything Forever

XRP Negative Funding Continues, Crashes To Levels Not Seen Since 2022

March 12, 2026
Cardano Just Saw A Large Spike In DeFi Activity, Why Is Price Still Struggling Below $0.3?

Cardano Just Saw A Large Spike In DeFi Activity, Why Is Price Still Struggling Below $0.3?

March 14, 2026
Investors Accuse JPMorgan of Facilitating $328M Crypto Fraud

Investors Accuse JPMorgan of Facilitating $328M Crypto Fraud

March 13, 2026
CGV Leads Expansion in Bitcoin Wallet Sector with UniSat Investment

Together AI Launches Voice Agent Platform With Sub-700ms Latency

March 13, 2026
VeryAI Raises $10M to Build Palm-Scan System for Verifying Humans Online

VeryAI Raises $10M to Build Palm-Scan System for Verifying Humans Online

March 13, 2026
Bitcoin Addresses Holding Between 100 and 10,000 BTC Hit a 7-Week High

VeChain Founder Sunny Lu Reveals $300 Scam That Sparked VET Creation

March 9, 2026
CryptoABC.net

This is an Australian online news/education portal that aims to provide the latest crypto news, real-time updates, education and reviews within Australia and around the world. Feel free to get in touch with us!

What's New Here!

SEC and CFTC Sign Pact to Coordinate Crypto Oversight

SEC and CFTC Sign Pact to Coordinate Crypto Oversight

March 16, 2026
Ethereum Price Rockets Above $2,200 as Bulls Tighten Market Control

Ethereum Price Rockets Above $2,200 as Bulls Tighten Market Control

March 16, 2026

Subscribe Now

  • Contact Us
  • Privacy Policy
  • Terms of Use
  • DMCA

© 2021 cryptoabc.net - All rights reserved!

No Result
View All Result
  • Live Crypto Prices
  • Crypto News
    • Worldwide
      • Bitcoin
      • Ethereum
      • Altcoin
      • Blockchain
      • Regulation
    • Australian Crypto News
  • Education
    • Cryptocurrency For Beginners
    • Where to Buy Cryptocurrency
    • Where to Store Cryptos
    • Cryptocurrency Tax in Australia 2021

© 2021 cryptoabc.net - All rights reserved!

Welcome Back!

Login to your account below

Forgotten Password?

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Please enter CoinGecko Free Api Key to get this plugin works.