Self-Spreading Malware Attacking Gamers, Stealing Credentials via YouTube: Kaspersky

The malware comes in a malicious bundle available at a very small price tag.

Advertisement
Written by Sourabh Kulesh, Edited by Siddharth Suvarna | Updated: 16 September 2022 18:18 IST
Highlights
  • YouTube videos are used to spread malware
  • These videos advertise cheats and cracks of popular games
  • The bundle consists of three executable files

Google says it has terminated the hacked channels

Photo Credit: Sora Shimazaki/ Pexels

A self-spreading malware is said to be attacking gamers via YouTube videos. As per a report by Kaspersky, this is caused by an unusual malicious bundle, which includes malicious programs distributed in the form of a single installation file, self-extracting archive or other file with installer-type functionality. Its main payload is the widespread RedLine stealer — one of the most common Trojans used to steal passwords and credentials from browsers. The report also says that the bundle is available on underground hacker forums for a small price tag.

According to the Kaspersky report, the malicious bundle is merely a few hundred dollars, which is a small price tag for malware. The RedLine stealer can steal usernames, passwords, cookies, bank card details, and autofill data from Chromium- and Gecko-based browsers, data from cryptowallets, instant messengers, and FTP/SSH/VPN clients. In addition, RedLine can download and run third-party programs, execute commands, and open links in the default browser.

Alongside the stealer, there are other files in the bundle that facilitate self-propagation of the malware. In the process, the YouTube channels are hacked and videos with malware are posted. “These videos advertise cheats and cracks and provide instructions on hacking popular games and software,” the report said.

Advertisement

The games for which cheats and cracks are mentioned in the videos include APB Reloaded, CrossFire, DayZ, Dying Light 2, F1 22, Farming Simulator, Farthest Frontier, FIFA 22, Final Fantasy XIV, Forza, Lego Star Wars, Osu!, Point Blank, Project Zomboid, Rust, Sniper Elite, Spider-Man, Stray, Thymesia, VRChat, and Walken. The report cited Google as saying that the hacked channels were quickly terminated for violation of the company's Community Guidelines.

Advertisement

Once accessed, the malicious bundle unpacks and runs three executable files. The first is the RedLine stealer, and the second is a miner. The report says that the main target audience is gamers who are likely to have video cards installed in their systems. These cards can be used for mining. The third executable file ensures automatic startup and runs the first of the batch files. These batch files run three other malicious files, which are responsible for the bundle's self-distribution.


Buying an affordable 5G smartphone today usually means you will end up paying a "5G tax". What does that mean for those looking to get access to 5G networks as soon as they launch? Find out on this week's episode. Orbital is available on Spotify, Gaana, JioSaavn, Google Podcasts, Apple Podcasts, Amazon Music and wherever you get your podcasts.
Affiliate links may be automatically generated - see our ethics statement for details.
 

Catch the latest from the Consumer Electronics Show on Gadgets 360, at our CES 2026 hub.

Advertisement
Popular Mobile Brands
  1. Moto Watch With Up to 13 Days of Battery Launched in India at This Price
  2. Here's How Much the Vivo V70 Series Could Cost in India
  3. Here's How WhatsApp's Secondary Accounts for Minors Might Work
  4. Motorola Signature With 50-Megapixel Cameras Debuts in India: See Price
  5. Microsoft Paint Now Lets You Generate Colouring Books Using AI
  1. NASA Confirms Historic Artifacts Will Fly on Artemis II Moon Mission
  2. Hubble Reveals How Blue Straggler Stars Stay Young in Ancient Clusters
  3. NASA Tests New Wing Design That Could Transform Airliner Efficiency
  4. James Webb Captures Stunning Infrared Image of the Helix Nebula Eye of God
  5. Mark Now Streaming Online: Where to Watch This Kannada Action Thriller Online?
  6. Physicists Develop New Method to Detect Tiny Fluctuations in Spacetime
  7. Scientists Reveal Why Jupiter and Saturn’s Polar Weather Looks So Different
  8. Tere Ishk Mein Now Streaming on Netflix: Know Everything About Plot, Cast, and More
  9. Microsoft Paint Can Now Create AI-Generated Colouring Books, Notepad Updated With New Markdown Features
  10. Afterburn Now Available Online: Where to Watch Dave Bautista and Samuel L. Jackson’s Post-Apocalyptic Action Film
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.