A fake desktop application impersonating the artificial intelligence assistant Claude is being used to distribute RevStealer, a Windows malware designed to steal cryptocurrencies, passwords and browser data.
According to a report published by cybersecurity firm Morphisec, the primary attack vector is a fraudulent project called “Claude Opus 5 Free Desktop” that impersonates Anthropic, the company behind the model, promising free access to the service.
RevStealer is designed to leave as little trace as possible. It scans browser databases, cookies, password manager records, VPN and remote access configurations, messaging data, screenshots and selected documents. It also targets more than 50 cryptocurrency wallets.
Before activating its malicious payload, the fake Claude verifies whether the machine belongs to a real user by analyzing available memory, processor cores, hostname, username and graphics hardware. If it detects conditions typical of an analysis environment, it halts the infection without proceeding to later stages.
Source:Â https://www.morphisec.com/blog/revstealer-silence-is-its-greatest-weapon/
Disclaimer:Â Crypto Economy Flash News are based on verified public and official sources. Their purpose is to provide fast, factual updates about relevant events in the crypto and blockchain ecosystem.
This information does not constitute financial advice or investment recommendation. Readers are encouraged to verify all details through official project channels before making any related decisions.





