Digita Security

Cybersecurity solutions for the

  • modern
  • mobile
  • independent
  • innovative
  • enterprising

macOS workforce

2.12.2014 ( Version 2045 )

CoinThiefB


OSX/CoinThief is Malware capable of stealing BitCoin wallet credentials and keys from users infected via trojanized BitCoin and LiteCoin ticker apps downloaded from popular sites, MacUpdate.com and Download.com. The original variant installed browser extensions for Safari and Chrome, while a later variant added support for FireFox. CoinThief was also found to have trojanized a pre-built application of StealthBit available for download on GitHub.com [1].

References:
  1. http://www.securemac.com/CoinThief-BitCoin-Trojan-Horse-MacOSX.php

Sample Hashes (VT links):
c2b81f705670c837c0bf5a2ddd1e398e967c0a08
02e243157dbc8803a364e9410a5c41b36de64c95