Close Menu
TechurzTechurz

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Kaltura acquires eSelf, founded by creator of Snap’s AI, in $27M deal

    November 10, 2025

    Remote driving startup Vay could grab up to $410M from Singapore’s Grab

    November 10, 2025

    Consolidation begins to hit the carbon credit market

    November 10, 2025
    Facebook X (Twitter) Instagram
    Trending
    • Kaltura acquires eSelf, founded by creator of Snap’s AI, in $27M deal
    • Remote driving startup Vay could grab up to $410M from Singapore’s Grab
    • Consolidation begins to hit the carbon credit market
    • Knicks player Miles McBride launches a location-sharing friendship app to rival Snap Map
    • Scribe hits $1.3B valuation as it moves to show where AI will actually pay off
    • Lenskart recovers from tepid open to close first day slightly above IPO price
    • Slow Ventures holds a ‘finishing school’ to help founders learn to be fancy
    • How one founder plans to save cities from flooding with terraforming robots
    Facebook X (Twitter) Instagram Pinterest Vimeo
    TechurzTechurz
    • Home
    • AI
    • Apps
    • News
    • Guides
    • Opinion
    • Reviews
    • Security
    • Startups
    TechurzTechurz
    Home»Apps»Facebook users are being tricked into downloading malware via fake crypto sites and celebrity-endorsed promotions
    Apps

    Facebook users are being tricked into downloading malware via fake crypto sites and celebrity-endorsed promotions

    TechurzBy TechurzMay 11, 2025No Comments3 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Cryptocurrencies
    Share
    Facebook Twitter LinkedIn Pinterest Email


    • Experts warn Facebook crypto ads now deliver malware through trusted brand impersonation
    • Malware deploys only when victims meet specific browser or profile criteria
    • Local server and PowerShell commands allow stealthy data exfiltration and control

    A new wave of malware attacks is targeting Bitcoin and crypto owners through Facebook ads that mimic trusted names in the industry.

    Bitdefender says it has uncovered a multi-stage malvertising campaign that exploits the reputations of well-known platforms like Binance, TradingView, ByBit, and others.

    These malicious ads don’t just trick users, they also adapt in real time to avoid detection and deliver malware only when conditions are ideal for the attackers.


    You may like

    Highly evasive delivery system

    (Image credit: Bitdefender)

    The scheme begins when cybercriminals hijack or create Facebook accounts and use Meta’s ad network to run fraudulent promotions.

    These ads feature fake offers and use photos of celebrities – Zendaya, Elon Musk, and Cristiano Ronaldo are the usual suspects – to appear more convincing.

    Once clicked, users are redirected to lookalike websites that impersonate legitimate cryptocurrency services and prompt them to download what appears to be a desktop client.

    The malware delivery system is highly evasive. Bitdefender says the front-end of the fake site works with a local server quietly spun up by the initial install, allowing attackers to send payloads directly to the victim’s system while dodging most security software.

    Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!

    Delivery only happens if the victim meets specific criteria, such as being logged into Facebook, using a preferred browser like Microsoft Edge, or matching a certain demographic profile.

    Some malware samples run lightweight .NET servers locally and communicate with the website using advanced scripts that execute encoded PowerShell commands. These can exfiltrate sensitive data like installed software, system and OS info, and even GPU details.

    Depending on the findings, the malware may download further payloads or simply go dormant if it suspects it’s being analyzed in a sandbox.

    Bitdefender researchers found hundreds of Facebook accounts promoting these campaigns. One ran more than 100 ads in a single day. Many ads target men aged 18 and older, with examples found in Bulgaria and Slovakia.

    How to stay safe

    (Image credit: Amazon India)

    Scrutinize ads carefully: Be highly skeptical of ads offering free crypto tools or financial perks. Always verify links before clicking.

    Download from official sources only: Visit platforms like Binance or TradingView directly. Never trust redirects from ads.

    Use link-checking tools: Tools like Bitdefender Scamio or Link Checker can alert you to dangerous URLs before you engage.

    Keep your security software up to date: Use a reputable antivirus that gets regular updates to catch evolving threats.

    Watch for suspicious browser behavior: Pages that insist you use Edge or redirect erratically are massive red flags.

    Report shady ads: Flag suspicious content on Facebook to help others avoid falling into the same trap.

    You might also like

    celebrityendorsed Crypto downloading Facebook Fake malware promotions sites tricked users
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleScientists say this bismuth-powered chip is 40% faster than Intel’s best – are silicon processors officially finished?
    Next Article iOS 19 may bring a feature that makes signing into public Wi-Fi less of a hassle
    Techurz
    • Website

    Related Posts

    Security

    PhantomRaven Malware Found in 126 npm Packages Stealing GitHub Tokens From Devs

    November 2, 2025
    Security

    DNS Poisoning Flaw, Supply-Chain Heist, Rust Malware Trick and New RATs Rising

    November 1, 2025
    Security

    Nation-State Hackers Deploy New Airstalk Malware in Suspected Supply Chain Attack

    October 31, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202511 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 20259 Views

    Start Saving Now: An iPhone 17 Pro Price Hike Is Likely, Says New Report

    August 17, 20258 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    A Former Apple Luminary Sets Out to Create the Ultimate GPU Software

    September 25, 202511 Views

    The Reason Murderbot’s Tone Feels Off

    May 14, 20259 Views

    Start Saving Now: An iPhone 17 Pro Price Hike Is Likely, Says New Report

    August 17, 20258 Views
    Our Picks

    Kaltura acquires eSelf, founded by creator of Snap’s AI, in $27M deal

    November 10, 2025

    Remote driving startup Vay could grab up to $410M from Singapore’s Grab

    November 10, 2025

    Consolidation begins to hit the carbon credit market

    November 10, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    • Disclaimer
    © 2025 techurz. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.