• Home
  • Shop
  • Privacy Policy
  • Terms of Service
  • Contact us
Wednesday, February 1, 2023
  • Home
  • Esports
  • PC Games
  • PS4
  • PS5
  • Switch
  • Wii U
  • XBox 360
  • XBox One
  • Xbox Series X
  • Mobile
  • Game News
No Result
View All Result
GameNewsUSA
wow warcraft alliance horde cataclysm leveling guide
  • Home
  • Esports
  • PC Games
  • PS4
  • PS5
  • Switch
  • Wii U
  • XBox 360
  • XBox One
  • Xbox Series X
  • Mobile
  • Game News
No Result
View All Result
GameNewsUSA
No Result
View All Result
Home PC Games

Fake Pokemon NFT game installer lets hackers hijack your PC

January 8, 2023
in PC Games
0

Threat actors are using a well-crafted Pokemon NFT card game website to distribute the NetSupport remote access tool and take control over victims’ devices.

The website “pokemon-go[.]io,” which is still online at the time of writing, claims to be home to a new NFT card game built around the Pokemon franchise, offering users strategic fun together with NFT investment profits.

Considering the popularity of both Pokemon and NFTs, it shouldn’t be hard for the operators of the malicious portal to draw an audience to the site through malspam, social media posts, etc.

Site promoting a fake Pokemon NFT game
Site promoting a fake Pokemon NFT game (BleepingComputer)

Those who click on the “Play on PC” button download an executable that looks like a legitimate game installer but, in reality, installs the NetSupport remote access tool (RAT) on the victim’s system.

The operation was uncovered by analysts at ASEC, who reports there was also a second site used in the campaign, at “beta-pokemoncards[.]io,” but it has since been taken offline.

This campaign’s first signs of activity appeared in December 2022, while earlier samples retrieved from VirusTotal showed that the same operators pushed a fake Visual Studio file instead of the Pokemon game.

Dropping the NetSupport RAT

The NetSupport RAT executable (“client32.exe”) and its dependencies are installed in a new folder in the %APPDATA% path. They are set to “hidden” to help evade detection from victims performing manual inspections on the file system.

Dropped files and contents of the configuration file
Dropped files and contents of the configuration file (ASEC)

Moreover, the installer creates an entry in the Windows Startup folder to ensure the RAT will execute upon system boot.

As NetSupport RAT (NetSupport Manager) is a legitimate program, threat actors commonly use it in the hopes it will evade security software.

NetSupport RAT interface
NetSupport RAT interface (ASEC)

The threat actors can now remotely connect to a user’s device to steal data, install other malware, or even attempt to spread further on the network.

While NetSupport Manager is a legitimate software product, it is commonly used by threat actors as part of their malicious campaigns.

In 2020, Microsoft warned about phishing actors using COVID-19-themed Excel files that dropped NetSupport RAT onto the recipients’ computers.

In August 2022, a campaign targeting WordPress sites with fake Cloudflare DDoS protection pages installed NetSupport RAT and Raccoon Stealer on victims.

NetSupport Manager supports remote screen control, screen recording, system monitoring, remote system grouping for better control, and plenty of connectivity options, including network traffic encryption.

That said, the consequences of such an infection are broad and severe, mainly concerning unauthorized access to sensitive user data and downloading further malware.

Related Posts

PC Games

Top tech news for Wednesday, February 1, 2023

February 1, 2023
PC Games

The Crew Motorfest announced | PC News at New Game Network

February 1, 2023
PC Games

The next Sims game ‘is not an MMO’ Maxis clarifies

January 31, 2023
PC Games

Game Developer -BACKFIREWALL_ LAUNCHES ON PC, PLAYSTATION AND XBOX PLATFORMS

January 31, 2023
PC Games

Games Inbox: Will Xbox ever beat PS5?

January 31, 2023
PC Games

NIS America Releases Rhapsody: Marl Kingdom Chronicles Collection of Sequel Games for PS5, Switch, PC in Summer – News

January 30, 2023
Load More
Next Post

Folwell backs a risky change in the State Health Plan

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Esports News

ESL FACEIT Group expands its viewing services for fans with Twitch and YouTube – European Gaming Industry News

February 1, 2023

Esports explained: Looking at the industry and history

February 1, 2023

Amazon University Esports returns for Spring Split 2023 with Apex Legends, a tour and a new University Leaderboard, with the University of Warwick (unsurprisingly) at the top already

January 31, 2023

Guild Esports PLC’s latest annual results see high-profile sponsorship deals take centre stage

January 31, 2023

PC Games

PS2 4K emulation on the M2 Pro Mac mini is real, and it’s spectacular

February 1, 2023

UK fishing fleet may become ‘unviable’ without switch to net-zero, says report

February 1, 2023

The Crew Motorfest Arriving This Year

February 1, 2023

PS Plus February 2023 FREE PS4 and PS5 games reveal date, time and leaked line-up revealed | Gaming | Entertainment

February 1, 2023
No Result
View All Result

Categories

  • Esports News
  • Game News
  • Mobile
  • PC Games
  • PS4
  • PS5 News
  • Switch
  • Wii U
  • XBox 360
  • XBox One
  • Xbox Series X

PS4

PS Plus February 2023 FREE PS4 and PS5 games reveal date, time and leaked line-up revealed | Gaming | Entertainment

February 1, 2023

Wii U

PS2 4K emulation on the M2 Pro Mac mini is real, and it’s spectacular

February 1, 2023

Microsoft Is Removing Dozens Of Games From The Xbox 360 Marketplace In February

February 1, 2023

Recent News

PS2 4K emulation on the M2 Pro Mac mini is real, and it’s spectacular

February 1, 2023

UK fishing fleet may become ‘unviable’ without switch to net-zero, says report

February 1, 2023
  • Home
  • Shop
  • Privacy Policy
  • Terms of Service
  • Contact us

© 2022 GameNewsUSA

No Result
View All Result
  • Home
  • Esports
  • PC Games
  • PS4
  • PS5
  • Switch
  • Wii U
  • XBox 360
  • XBox One
  • Xbox Series X
  • Mobile
  • Game News

© 2022 GameNewsUSA