According to the safety vendor Bitdefender, shortly after the movie Odyssey came online, there were malicious documents on the Internet disguised as a source of high-level cleanness. On the surface, these documents are common pirated video resources, but in fact, Windows executes programs that are operated with stealth software in the equipment.
Concealed as a source file dissemination
It was reported that most of the relevant documents were named WEBRip or Blu-ray versions, with icons similar to VLC players or video files, to reduce user vigilance. It is difficult for many users to distinguish between ".exe" and real video files because Windows defaults to hide extensions.
Stolen wallets and account data
Once the program is opened, Lumma Stealer collects passwords, payment information, autofill information, remote desktop vouchers and encrypted wallet data that the browser keeps. Bitdefender also alleged that such malicious software would steal authentication cookies and that the assailant could take over the account session.
This means that even if the user has opened a multifactorial authentication, some accounts may still be compromised by the hijacking of a session. The range of risks is not limited to wallet assets, but may also extend to mailboxes, trading platforms and other online services.
It's a popular input portal.
According to Bitdefender, the incident was in line with the usual pattern in recent years: the attackers hid the stealth program into the user's eager downloads, using high-demand resources such as films, game models, wallpapers or software packages for dissemination.
It recommends that the user view the video as far as possible through the regular streaming service, not run the executables marked as video content, and open the Windows file extension display to identify the disguised file.
