logo

Chinese Gamers Targeted in Winos4.0 Framework Scam

ID: efc10177-27a7-5d8a-b10d-41721a52c82b

STIX ID: report--efc10177-27a7-5d8a-b10d-41721a52c82b

Feed Name: Dark Reading

Threat Score
75/100

Date Published: 2024-11-06

Date Updated: 2026-04-21

Author: Dark Reading Staff

...
...

Fortinet FortiGuard Labs warns of Winos4.0, an advanced modular malware framework (derived from Gh0strat) distributed through game-related installers and optimization tools in campaigns such as Silver Fox and Void Arachne; it uses SEO and social platforms (including Telegram) to target Chinese-speaking users, employs a fake BMP to drop a DLL and establishes encrypted C2 communications to gain deep control of infected systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.