Altcoins

What Is StilachiRAT? Microsoft Exposes New Crypto-Targeting Malware

By Akriti Seth

Last Updated: Mar 18, 2025

Fact checked

By Sam Cooling

Disclaimer Icon
Disclaimer

Crypto is a high-risk asset class. This article is provided for informational purposes and does not constitute investment advice. You could lose all of your capital.
99Bitcoins may receive advertising commissions for visits to a suggested operator through our affiliate links, at no added cost to you. All our recommendations follow a thorough review process.

Disclaimer Icon
Disclaimer

Crypto is a high-risk asset class. This article is provided for informational purposes and does not constitute investment advice. You could lose all of your capital.
99Bitcoins may receive advertising commissions for visits to a suggested operator through our affiliate links, at no added cost to you. All our recommendations follow a thorough review process.

In a 17 March 2025 “incident response,” Microsoft revealed that it uncovered a novel remote access trojan (RAT) or StilachiRAT that can steal information from the target system, such as digital wallet information.

According to Microsoft, key capabilities of StilachiRAT includes digital wallet targeting. The malware can scan for configuration data of 20 different cryptocurrency wallet extensions for the Google Chrome browser.

“StilachiRAT targets a list of specific cryptocurrency wallet extensions for the Google Chrome browser,” said Microsoft.

ExploreNext 1000X Crypto: 10+ Crypto Tokens That Can Hit 1000x in 2025

First identified by Microsoft’s Incident Response Team in November 2024, StilachiRAT is a sophisticated malware capable of infiltrating devices, stealing sensitive data, and evading detection. It targets over 20 cryptocurrency wallet extensions on Google Chrome, including popular wallets such Bitget, MetaMask, BNB Chain, OKX, Coinbase and more.

Microsoft said that StilachiRAT collects comprehensive system information, including operating system (OS) details, hardware identifiers, camera presence, active Remote Desktop Protocol (RDP) sessions, and running graphical user interface (GUI) applications, allowing detailed profiling of the target system.

StilachiRAT is just one example of how cybercriminals are adapting their methods to exploit vulnerabilities in the crypto ecosystem. In 2024 alone, scammers stole approximately $9.9 billion in on-chain cryptocurrencies—a 40% increase compared to the previous year.

However, Microsoft has not yet attributed StilachiRAT to a specific threat actor or geolocation. But the company continues to monitor information on the delivery vector used in these attacks.

“Malware like StilachiRAT can be installed through multiple vectors; therefore, it is critical to implement security hardening measures to prevent the initial compromise,” warned Microsoft.

ExploreBest Meme Coin ICOs to Invest in March 2025

Key Takeaways

  • Microsoft has issued a stark warning to cryptocurrency users following the discovery of a new malware, StilachiRAT, which poses a significant threat to digital asset security.

  • First identified by Microsoft’s Incident Response Team in November 2024, StilachiRAT is a sophisticated malware capable of infiltrating devices, stealing sensitive data, and evading detection.

Why you can trust 99Bitcoins

10+ Years

Established in 2013, 99Bitcoin’s team members have been crypto experts since Bitcoin’s Early days.

90hr+

Weekly Research

100k+

Monthly readers

50+

Expert contributors

2000+

Crypto Projects Reviewed

Google News Icon
Follow 99Bitcoins on your Google News Feed
Get the latest updates, trends, and insights delivered straight to your fingertips. Subscribe now!
Subscribe now
Akriti Seth
Akriti Seth
Senior Editor

Akriti Seth is a Zurich-based Business Journalist and Crypto Editor. Her passion for journalism has taken her across the globe – from thriving as an on-television correspondent to writing engaging articles, she has worked for companies like Informa UK, Bloomberg... Read More

Free Bitcoin Crash Course

  • Enjoyed by over 100,000 students.
  • One email a day, 7 days in a row.
  • Short and educational, guaranteed!
Back to top