Stealka Malware Explained: How Fake Game Mods And Software Cracks Are Draining ...
A newly identified malware strain known as Stealka is stealing cryptocurrency by posing as game cheats, software cracks and popular mods, using trusted download platforms and fake websites to trick users into infecting their own devices.
Cybersecurity researchers at Kaspersky say the Windows-based infostealer has been actively circulating since at least November, targeting browser data, locally installed applications and both browser-based and desktop crypto wallets.
Once executed, Stealka is capable of hijacking online accounts, draining cryptocurrency holdings and, in some cases, installing a crypto miner to further monetize infected systems.
According to Kaspersky’s analysis, Stealka spreads primarily through files that users voluntarily download and run.
The malware is commonly disguised as cracked versions of commercial software or as cheats and mods for popular games, distributed through widely used platforms such as GitHub, SourceForge, Softpedia and Google Sites.
In several cases, attackers uploaded malicious files to legitimate repositories, relying on the platforms’ credibility to lower suspicion.
In parallel, researchers observed professionally designed fake websites offering pirated software or game scripts.
These sites often display false antivirus scan results to create the impression that downloads are safe.
In reality, the file names and page descriptions serve only as bait; the downloaded content consistently contains the same infostealer payload.
Once installed, Stealka focuses heavily on web browsers built on Chromium and Gecko, exposing users of more than a hundred browsers to data theft.
Also Read : ING Flags Deep Shift As China, India And Brazil Reduce Billions Of U.S. Treasury Holdings In A Single Month
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
