Close Menu
World Forbes – Business, Tech, AI & Global Insights
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
What's Hot

Biden’s cancer diagnosis renews transparency debate, as Trump cries coverup | Health News

May 20, 2025

Klarna’s revenue per employee soars to nearly $1M thanks to AI efficiency push

May 20, 2025

US top court allows Trump admin to revoke protected status for Venezuelans | Migration News

May 19, 2025
Facebook X (Twitter) Instagram
Trending
  • Biden’s cancer diagnosis renews transparency debate, as Trump cries coverup | Health News
  • Klarna’s revenue per employee soars to nearly $1M thanks to AI efficiency push
  • US top court allows Trump admin to revoke protected status for Venezuelans | Migration News
  • Google launches stand-alone NotebookLM apps for Android and iOS
  • BreachRx Lands $15 Million as Investors Bet on Breach-Workflow Software
  • Texas lawmakers OK former Uvalde mayor’s effort to fix police failures in Robb Elementary attack
  • Measure targeting pro-Palestine NGOs disappears from US tax bill | Politics News
  • Printer Company Procolored Served Infected Software for Months
World Forbes – Business, Tech, AI & Global InsightsWorld Forbes – Business, Tech, AI & Global Insights
Tuesday, May 20
  • Home
  • AI
  • Billionaires
  • Business
  • Cybersecurity
  • Education
    • Innovation
  • Money
  • Small Business
  • Sports
  • Trump
World Forbes – Business, Tech, AI & Global Insights
Home » Printer Company Procolored Served Infected Software for Months
Cybersecurity

Printer Company Procolored Served Infected Software for Months

adminBy adminMay 19, 2025No Comments3 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Telegram Email
Share
Facebook Twitter LinkedIn Pinterest Email
Post Views: 9


For half a year, the website of printer company Procolored served software downloads that contained malware, cybersecurity firm GData reports.

After being tipped off by a tech writer that the USB drive containing the device’s software was infected with malware, GData analyzed the software downloads available through the company’s website, only to discover that they were infected as well.

The tech writer, Cameron Coward, had notified the printer firm of the issue, only to be told that the malware detection was likely a false positive and that there was nothing wrong with the flash drive.

GData, however, discovered that 39 software downloads, hosted on mega.nz and last updated in October 2024, had been infected with two malware families, namely an information stealer and a backdoor.

The backdoor, dubbed XRed, is written in Delphi and has worm-like behavior. The sample found in Procolored’s downloads could log keystrokes, download additional payloads, take screenshots, tamper with files, and provide a shell if requested.

The stealer, named CoinStealer, targets cryptocurrency wallets but can also replace cryptocurrency addresses in the clipboard with an attacker’s address, to divert funds to the attacker during transfers.

However, GData discovered that the stealer is also a virus that targets executable files, prepending itself to them, and then moves the infected files to the host’s original location.

According to the cybersecurity firm, XRed bundles the virus, dubbed SnipVex, which leads to a “superinfection”, as the target system ends up hosting multiple self-replicating malware families.

Advertisement. Scroll to continue reading.

“The virus infection also explains why a total of 39 files in the downloads section of Procolored were infected. SnipVex likely replicated itself on a developer’s system or the build servers,” GData explains.

A look at the cryptocurrency address the stealer would replace a victim’s address with in the clipboard reveals that it received over 9 Bitcoin (valued at more than $900,000).

Although it initially denied a possible malware infection, Procolored removed the software downloads from its website, saying it was investigating them and that it would repost them if found clean.

The company told GData that the software hosted on its website was initially transferred using a flash drive, and that the virus could have been introduced during the process.

SecurityWeek has contacted Procolored for a statement on the matter and will update this article if a reply arrives.

Related: Infostealer Infections Lead to Telefonica Ticketing System Breach

Related: Snowflake Attacks: Mandiant Links Data Breaches to Infostealer Infections

Related: Police Warn Hundreds of Online Merchants of Skimmer Infections

Related: NSA Issues Guidance on Mitigating BlackLotus Bootkit Infections



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
admin
  • Website

Related Posts

BreachRx Lands $15 Million as Investors Bet on Breach-Workflow Software

May 19, 2025

UK Legal Aid Agency Finds Data Breach Following Cyberattack

May 19, 2025

480,000 Catholic Health Patients Impacted by Serviceaide Data Leak

May 19, 2025

Spiking Neural Networks: Brain-Inspired Chips That Could Keep Your Data Safe

May 19, 2025

200,000 Harbin Clinic Patients Impacted by NRS Data Breach

May 19, 2025

Prison Sentence for Man Involved in SEC X Account Hack

May 19, 2025
Add A Comment
Leave A Reply Cancel Reply

Don't Miss
Billionaires

Here’s How Much Selena Gomez-Actress, Singer, Entrepreneur-Is Worth

May 13, 2025

Contrary to reports of her 10-figure status, Forbes estimates the Disney star turned business mogul’s…

Looking Back At Trump’s Years-Long Obsession With Oversized Airplanes

May 13, 2025

Selena Gomez’s Mental Health Startup Wondermind Lays Off Nearly Two-Thirds Of Its Employees

May 13, 2025

Billionaires And CEOs Are Seeking Personal Security At Record Rates

May 9, 2025
Our Picks

Biden’s cancer diagnosis renews transparency debate, as Trump cries coverup | Health News

May 20, 2025

Klarna’s revenue per employee soars to nearly $1M thanks to AI efficiency push

May 20, 2025

US top court allows Trump admin to revoke protected status for Venezuelans | Migration News

May 19, 2025

Google launches stand-alone NotebookLM apps for Android and iOS

May 19, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

About Us
About Us

Welcome to World-Forbes.com
At World-Forbes.com, we bring you the latest insights, trends, and analysis across various industries, empowering our readers with valuable knowledge. Our platform is dedicated to covering a wide range of topics, including sports, small business, business, technology, AI, cybersecurity, and lifestyle.

Our Picks

Klarna’s revenue per employee soars to nearly $1M thanks to AI efficiency push

May 20, 2025

Google launches stand-alone NotebookLM apps for Android and iOS

May 19, 2025

Trump to sign bill criminalizing revenge porn and explicit deepfakes

May 19, 2025

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Subscribe my Newsletter for New Posts & tips Let's stay updated!

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact Us
  • DMCA Policy
  • Privacy Policy
  • Terms & Conditions
© 2025 world-forbes. Designed by world-forbes.

Type above and press Enter to search. Press Esc to cancel.