22 Mar 2025

light mode

New StilachiRAT Virus Threatens Your Crypto Wallets, Warns Microsoft

New StilachiRAT Virus Threatens Your Crypto Wallets, Warns Microsoft

Microsoft has discovered a remote access Trojan (RAT), StilachiRAT, specifically designed to steal sensitive information, including crypto wallet data.

On this page

Microsoft first uncovered the StilachiRAT Trojan in November 2024, months before its capabilities became widely known. This malware is designed to harvest confidential system data, including OS specifications, hardware IDs, and active remote desktop connections.

The Trojan’s most critical module, WWStartupCtrl64.dll, powers its primary attack mechanisms. StilachiRAT is capable of extracting stored passwords from Google Chrome, monitoring clipboard content for cryptographic keys, and analyzing installed extensions related to cryptocurrency security.

Check this out: Fake Job Offers, GrassCall, and Crypto: A New Scam Uncovered

StilachiRAT is particularly dangerous as it specifically targets twenty of the most popular browser-based cryptocurrency wallets, including MetaMask, Trust Wallet, OKX Wallet, Coinbase Wallet, and others. The Trojan also scans the registry for valuable data. Once the necessary information is found, it collects data that could lead to digital asset theft or bank account breaches.

Partial list of wallets StilachiRAT targets - The Coinomist
Partial list of wallets StilachiRAT targets. Source: Microsoft Official Blog

The StilachiRAT Trojan uses TCP ports 53, 443, and 16000 to connect with its control servers, granting attackers remote access to compromised systems. This allows them to issue commands, modify processes, and even reboot devices. StilachiRAT employs complex evasion tactics, such as connection delays and anti-forensic techniques, which make detection and analysis significantly more challenging.

How to Protect Yourself from StilachiRAT

According to Microsoft, StilachiRAT is not widely distributed at the moment, but its high stealth capabilities and rapidly developing threat landscape require greater attention from users.

The primary security measures to adopt are:

  • Ensuring antivirus software is up to date;
  • Enabling real-time protection features;
  • Using modern tools designed to block potentially unwanted programs.

Malware like StilachiRAT can be installed through multiple vectors; therefore, it is critical to implement security hardening measures to prevent the initial compromise,

says the company’s official blog.

To secure cryptocurrency assets, experts recommend using wallets equipped with multi-factor authentication, keeping software up-to-date, and relying on hardware devices.

In February 2025, cyberattacks led to $1.53 billion in losses within the cryptocurrency industry. This reinforces the need for a comprehensive security approach to mitigate future risks.

Related: How to Set Up a Crypto Wallet: Tips for Safe and Easy Setup

Microsoft has promised to keep a close watch on the evolving StilachiRAT Trojan, continually refining its detection tools. The release of technical data about the malware is designed to help cybersecurity experts detect attacks more rapidly and limit the damage caused. Sharing threat intelligence is a critical weapon in the fight against viruses, and Microsoft is leading the charge.

The content on The Coinomist is for informational purposes only and should not be interpreted as financial advice. While we strive to provide accurate and up-to-date information, we do not guarantee the accuracy, completeness, or reliability of any content. Neither we accept liability for any errors or omissions in the information provided or for any financial losses incurred as a result of relying on this information. Actions based on this content are at your own risk. Always do your own research and consult a professional. See our Terms, Privacy Policy, and Disclaimers for more details.

Articles by this author
Metaplanet Appoints Eric Trump as Strategic Advisor Amid Bitcoin Adoption

Metaplanet Appoints Eric Trump as Strategic Advisor Amid Bitcoin Adoption

Metaplanet has named Eric Trump as the first member of its Strategic Advisory Board. The decision aims to strengthen the Japanese company’s presence in the Bitcoin economy and elevate its public brand.

Vlad Vovk
ZachXBT Uncovers Hyperliquid Whale Behind $20M in Illicit Crypto Profits 

ZachXBT Uncovers Hyperliquid Whale Behind $20M in Illicit Crypto Profits 

Blockchain investigator ZachXBT shared an analysis of the alleged identity of a Hyperliquid whale who profited around $20 million through illicit trading activity.

Anahit Avetisyan
US SEC Rules Out Securities Status for Proof-of-Work Mining

US SEC Rules Out Securities Status for Proof-of-Work Mining

According to an official clarification, the SEC has ruled that Proof-of-Work mining processes are exempt from securities oversight.

Dmytro Psevdonimenko
BitMEX and KuCoin Face South Korean Sanctions Over Unlicensed Operations

BitMEX and KuCoin Face South Korean Sanctions Over Unlicensed Operations

As South Korea intensifies its oversight of digital assets, regulators are preparing sanctions against unregistered foreign exchanges lacking VASP certification.

Anton Kryshtal
How Jeremy Allaire Built Circle and Made USDC a Stablecoin Giant

How Jeremy Allaire Built Circle and Made USDC a Stablecoin Giant

On a Friday evening in March 2023, panic gripped the crypto market. USDC, a so-called reliable stablecoin, temporarily lost its dollar peg, dropping below $1.

Ivan Dikalenko
Top Crypto Tweets of the Week: Ripple Case Ended, Solana Ad Debates, & More

Top Crypto Tweets of the Week: Ripple Case Ended, Solana Ad Debates, & More

The long-awaited end of the US SEC vs. Ripple lawsuit, Solana’s controversial ad and the SEC’s crypto roundtable were among the top trending topics on X today.

Anahit Avetisyan
What’s Trending in Crypto Today? Paolo Ardoino on Tether’s Growth, & More

What’s Trending in Crypto Today? Paolo Ardoino on Tether’s Growth, & More

Paolo Ardoino shared stats revealing Tether’s growth in 2024, while key Ethereum figures gather around the table, and Mark ‘Billy’ Zeller analyzes his portfolio performance over the years.

Anahit Avetisyan
What is a Hash Function and Why It’s Essential?

What is a Hash Function and Why It’s Essential?

Learn what a hash function is, how it works, and why it’s vital for data integrity, security, and performance in modern computing and blockchain technology.

The Coinomist
How Many Confirmations for Bitcoin Transactions and Why It Matters

How Many Confirmations for Bitcoin Transactions and Why It Matters

Learn what Bitcoin confirmations are, how many are required for different transactions, and why they matter for security and fraud prevention in the blockchain.

The Coinomist
What is a Check Digit? A Full Explanation

What is a Check Digit? A Full Explanation

Discover what a check digit is, how it’s calculated, and why it matters for data verification. Learn how algorithms like Luhn ensure data integrity across various industries.

The Coinomist
When Was Ethereum Created and How It Transformed Blockchain?

When Was Ethereum Created and How It Transformed Blockchain?

Explore Ethereum’s origins and evolution. Learn how Vitalik Buterin’s vision reshaped blockchain technology, sparking innovations like smart contracts, DeFi, and NFTs.

The Coinomist
How Many Sats in a Bitcoin? Everything You Need to Know

How Many Sats in a Bitcoin? Everything You Need to Know

Learn how many satoshis (sats) make up one Bitcoin and why this divisibility matters. Understand the role of sats in facilitating microtransactions and enhancing Bitcoin’s usability.

The Coinomist
OnyxCoin (XCN): Why This Layer-3 Blockchain Is Gaining Investor Attention

OnyxCoin (XCN): Why This Layer-3 Blockchain Is Gaining Investor Attention

OnyxCoin isn’t just a crypto project—it’s an infrastructure built for the digital age, offering scalable, secure, and low-cost transactions for a globalized economy.

Vlad Vovk
Trump’s “US Crypto Reserve” Plan: A Game Changer or Just Talk?

Trump’s “US Crypto Reserve” Plan: A Game Changer or Just Talk?

It takes just one post from Trump to stir the crypto market. Recently, he announced on Truth Social that the evaluation of a strategic crypto reserve is in progress as part of his broader Trump crypto policy.

Anahit Avetisyan
Trump’s Crypto Tax Plan: Smart Policy or Risky Gamble?

Trump’s Crypto Tax Plan: Smart Policy or Risky Gamble?

There’s been a lot of talk about possible changes to crypto tax policies in the U.S. One of the more controversial ideas floating around is “Trump no tax on crypto.” As Trump adopts a more crypto-friendly stance, major rumors have surfaced that he’s considering a 0% tax on crypto gains.

Anahit Avetisyan
MORE
Surf, Sun & Satoshis: Inside El Zonte, the Bitcoin Beach Town

Surf, Sun & Satoshis: Inside El Zonte, the Bitcoin Beach Town

El Zonte, a scenic coastal town in El Salvador, was once known as a surfer’s paradise. However, with Bitcoin now functioning as everyday currency, the town has earned a new identity as Bitcoin Beach.

The Coinomist
Hidden Gem or Overhyped? Exploring El Salvador Like a Local

Hidden Gem or Overhyped? Exploring El Salvador Like a Local

Your ultimate El Salvador travel guide to a country where BTC is legal tender and cryptocurrency is transforming the way locals live and transact.

The Coinomist
MORE