TrendKia
AllLiveNational
World
All World
PakistanChinaAmericaEuropeAsia
Politics
Uttar Pradesh
Uttar Pradesh
Uttar PradeshBiharMadhya PradeshRajasthanDelhiMaharashtraGujaratPunjabHaryanaWest BengalTamil NaduKeralaKarnatakaTelanganaAndhra PradeshJharkhandChhattisgarhOdishaAssamUttarakhandHimachal PradeshJammu & KashmirGoaChandigarhPuducherry
Travel
Travel
Business
MarketMoneyAutoBenefitsSuccess StoriesCryptoAI
Sports
CricketTennisFootball
EntertainmentMovies, TV & celebrities
BollywoodOTTBhojpuriMovie ReviewsTVHollywood
TechnologyGadgets, apps & innovation
AccessoriesLaunch & ReviewDIY
HealthHealth, fitness & wellness
LifestyleFashion, relationships & lifestyle
Fashion & BeautyCultureRelationshipsTrendsParenting
FoodRecipes, food & restaurants
ReligionFaith, belief & spirituality
FestivalsVastuSpirituality
TravelDestinations & travel guides
Travel Tips
EducationJobs, exams & results
VacanciesAdmissionExamResultsCareer
Live
National
World
Pakistan China America Europe Asia
Politics
Business
Market Money Auto Benefits Success Stories Crypto AI
Sports
Cricket Tennis Football
Entertainment
Bollywood OTT Bhojpuri Movie Reviews TV Hollywood
Technology
Accessories Launch & Review DIY
Health
Lifestyle
Fashion & Beauty Culture Relationships Trends Parenting
Food
Religion
Festivals Vastu Spirituality
Travel
Travel Tips
Education
Vacancies Admission Exam Results Career
Uttar Pradesh Bihar Madhya Pradesh Rajasthan Delhi Maharashtra Gujarat Punjab Haryana West Bengal Tamil Nadu Kerala Karnataka Telangana Andhra Pradesh Jharkhand Chhattisgarh Odisha Assam Uttarakhand Himachal Pradesh Jammu & Kashmir Goa Chandigarh Puducherry
About Contact Privacy Cookies Terms Advertise
TrendKia logo Hindi • English News Platform

TrendKia

Fast • Fresh • Always Trending

TrendKia is a free bilingual Hindi–English news platform — trending stories from India and around the world. Sign in with Google to comment and follow topics.

About Us
TrendKia news app preview
TrendKia
AboutContactPrivacyCookiesTermsAdvertise
Police Sweep Across Several Countries Cripples Malware Quietly Looting Crypto WalletsBusiness
2 hours ago· 4

Police Sweep Across Several Countries Cripples Malware Quietly Looting Crypto Wallets

In the newest phase of Operation Endgame, investigators froze more than €41 million (about $47 million) in stolen crypto and dismantled the infrastructure behind three malware families, SocGholish, Amadey and StealC.

Amit PatelAmit PatelBusiness Correspondent 2 min read For AI
Share

A sprawling international operation aimed at the "cybercrime-as-a-service" malware that silently drains money from digital wallets has locked down tens of millions of dollars in stolen funds.

In the newest phase of Operation Endgame, investigators identified, flagged and froze more than €41 million, roughly $47 million, in criminal crypto holdings, Europol announced on Wednesday. The coordinated push, spanning two weeks and several countries, tore down the backbone supporting three malware families: SocGholish, Amadey and StealC.

Three strains, one shared target: crypto users

StealC is an infostealer that has been sold as a service since 2023. It scrapes passwords, browser cookies and crypto wallet data from infected machines. Its control panel even shipped with a plugin that tried to decrypt the seed phrases of victims' MetaMask wallets, something researchers at Proofpoint uncovered.

Amadey is the one that gets the initial foothold and then drops further malware, while SocGholish, which is linked to the Russian group Evil Corp, infects people through fake browser-update prompts planted on hacked websites. Together they form the opening stage of attacks that end in emptied wallets, hijacked accounts and ransomware.

What the crackdown seized

Police took down 326 servers and 142 domains, recovered almost 27 million stolen credentials from more than 385,000 compromised systems, and cleaned nearly 15,000 infected websites, many of them small businesses. Microsoft, a partner in the operation, tied Amadey and StealC to over 140,000 infected computers worldwide in the first two weeks of May alone.

Why infostealers are the new path to crypto theft

Infostealers have become a primary route to stolen crypto, quietly lifting wallet files, private keys and seed phrases straight off victims' devices. They lean on a range of tricks to reach crypto users, including fake AI tools, Steam wallpapers and pirated game mods.

The scale of exposure is enormous. An earlier Operation Endgame action late last year surfaced login data for more than 100,000 crypto wallets, already stolen from victims but not yet drained.

Microsoft's legal offensive

Microsoft's Digital Crimes Unit separately filed a U.S. racketeering lawsuit that, for the first time, treated two malware families as a single criminal conspiracy. Using AI tools including Copilot to analyze the malware, investigators found that Amadey and StealC, though built by different criminals, ran on shared infrastructure. That allowed Microsoft to charge enablers across both operations under the RICO Act and knock out more than 200 command-and-control servers. It has since identified over 18,000 victim computers and started severing the attackers' control.

The same unit has dismantled five operations in nine months that were powering cybercrime-as-a-service (CaaS).

The fight is far from over

Takedowns like this rarely wipe out malware for good, and the operators behind it tend to regroup, with StealC pushing out a fresh build as recently as this month. For now, Europol and its partners are routing victim alerts through services such as Have I Been Pwned, so users can check whether their credentials, and the keys to their wallets, are already in criminal hands.

What this means for you

  • For crypto holders: Check Have I Been Pwned to see if your credentials leaked, and if your wallet may be exposed, move your funds and generate a new seed phrase right away.
  • For everyday internet users: Steer clear of fake browser-update popups, pirated game mods, unofficial AI tools and Steam wallpapers, which are common infection routes.
  • Stay cautious: The freeze helps, but the malware can return, so treat this as a cue to tighten security, not an all-clear.

Questions & Answers

How much crypto was frozen in this action?
Investigators froze more than €41 million, about $47 million, in criminal crypto assets.
Which malware families were targeted?
The infrastructure behind three malware families, SocGholish, Amadey and StealC, was dismantled.
What does StealC steal?
It scrapes passwords, browser cookies and crypto wallet data from infected machines, and its panel even had a plugin that tried to decrypt MetaMask seed phrases.
How many servers and domains were taken down?
Police took down 326 servers and 142 domains and recovered almost 27 million stolen credentials.
How can I check whether I was affected?
Users can check services such as Have I Been Pwned to see whether their credentials are already in criminal hands.
What did Microsoft do on the legal side?
Microsoft's Digital Crimes Unit filed a U.S. racketeering lawsuit, treated Amadey and StealC as a single conspiracy, and knocked out more than 200 command-and-control servers.
Is the threat over now?
No, such takedowns rarely wipe out malware for good, and StealC pushed out a fresh build as recently as this month.
How do infostealers reach crypto users?
They use tricks such as fake AI tools, Steam wallpapers and pirated game mods to lure victims.
#Business#OperationEndgame#CryptoTheft#Infostealer#StealC#Europol#Microsoft#Malware#Cybercrime

Comments 0

Sign in to join the conversation.

Sign in

No comments yet — be the first.

Three Indian Sailors Killed in Gulf of Oman Strike: Shashi Tharoor Tears Into US Over 'Insensitive' Statement, Presses Jaishankar TooPolitics1
Three Indian Sailors Killed in Gulf of Oman Strike: Shashi Tharoor Tears Into US Over 'Insensitive' Statement, Presses Jaishankar Too
Wall Street's Big Bet on AMZN: Where Could Amazon Stock Land Between 2026 and 2028?Market2
Wall Street's Big Bet on AMZN: Where Could Amazon Stock Land Between 2026 and 2028?
FCC's 'Know Your Customer' Plan Could End Anonymous Phones — Plus the Week's Biggest Breaches and BustsSecurity3
FCC's 'Know Your Customer' Plan Could End Anonymous Phones — Plus the Week's Biggest Breaches and Busts

Latest news straight to your inbox

The day's big stories, in one email.

TrendKia बाज़ारAdvertisementमानसून सेल — हर चीज़ पर 50% तक छूटTrendKia बाज़ारअभी खरीदें →
Citizen journalism

Become a TrendKia journalist

Voice of the people

Share news, photos and videos from your area with TrendKia and let your voice reach the nation. Every citizen a journalist.

Join now
Citizen journalistCitizen journalist
Citizen journalist
Citizen journalist

Related stories

Prediction Markets Brace for Deeper Bitcoin and Ethereum Losses as Strategy's STRC Sinks to a Record LowMarket
Prediction Markets Brace for Deeper Bitcoin and Ethereum Losses as Strategy's STRC Sinks to a Record Low
11 min ago
Parking your emergency cash? How Axis and Nippon India liquid funds compare on returns, cost and safetyMoney
Parking your emergency cash? How Axis and Nippon India liquid funds compare on returns, cost and safety
14 min ago
The Simple 3/20/30/40 Math Every Homebuyer Should Run Before Signing a LoanMoney
The Simple 3/20/30/40 Math Every Homebuyer Should Run Before Signing a Loan
17 min ago
India Launches Its First 'Hub and Spoke' Flight From Varanasi, Ending Long Foreign Layovers for FlyersBusiness
India Launches Its First 'Hub and Spoke' Flight From Varanasi, Ending Long Foreign Layovers for Flyers
24 min ago
Just ₹1,800 a Month Can Quietly Turn Into Nearly ₹19 Lakh in 25 Years, Here Is How EPF Pulls It OffMoney
Just ₹1,800 a Month Can Quietly Turn Into Nearly ₹19 Lakh in 25 Years, Here Is How EPF Pulls It Off
27 min ago
Three Jobs Sugarcane Farmers Must Finish Before the Rains Arrive to Stop Crops From TopplingBusiness
Three Jobs Sugarcane Farmers Must Finish Before the Rains Arrive to Stop Crops From Toppling
31 min ago
Gold claws back from its 2026 low, but the charts still lean lowerMarket
Gold claws back from its 2026 low, but the charts still lean lower
42 min ago
Crypto's Pain Isn't Over Yet, but the Death Calls Are Premature, Says Veteran Trader Bob LoukasCrypto
Crypto's Pain Isn't Over Yet, but the Death Calls Are Premature, Says Veteran Trader Bob Loukas
1 hour ago