Jamm.to is a virus, downvote any spam bots you see posting it.

in #hive5 days ago

This is from a reply I made to someone, I figured this is important public knowledge so I'm making it into its own post.

It's a scam, has a Remote Access Tool embedded in it with a keylogger, screenshot tool, possibly more functions. Likely steals wallets and then waits for you to enter the decryption password to steal your coins, either that or it's a botnet.

Uses an interesting method of obfuscating the IP addresses it connects to, they're hidden behind pastebin links.

Like so, with contents next to link if they're pulled down or changed later:

The person behind this has done it before, previously it was called eTrader but they did a terrible job of hiding the malware and it set off antiviruses.

Whoever made this did not hide it well, they went just far enough to make antiviruses not detect it but it's extremely obvious within less than two minutes of basic manual analysis.

Note: This analysis is of the Mac/Linux download, the Windows download may be far worse.

Stay safe out there and do your best to avoid malware like this.


Congratulations @death-and-taxes! You have completed the following achievement on the Hive blockchain and have been rewarded with new badge(s) :

You distributed more than 50 upvotes. Your next target is to reach 100 upvotes.

You can view your badges on your board and compare yourself to others in the Ranking
If you no longer want to receive notifications, reply to this comment with the word STOP

Your post has been boosted with Ecency Points. Keep up the good work!
Dear reader, Install Android: https://android.ecency.com, iOS: https://ios.ecency.com mobile app or desktop app for Windows, Mac, Linux: https://desktop.ecency.com
Learn more: https://ecency.com
Join our discord: https://discord.me/ecency