New FEMITBOT Network Uses Telegram Mini Apps to Push Crypto Fraud and Android Malware
A new variant of the FEMITBOT network is leveraging Telegram mini-apps (bots) to distribute phishing pages, crypto fraud schemes, and malicious Android apps. This sophisticated approach aims to deceive users into believing they are interacting with legitimate cryptocurrency platforms or services.
Key Components:
-
Phishing Domains:
zerocap[.]vip: Impersonates a reputable crypto platform.spiderpool[.]app: Linked to crypto fraud schemes.btcaimining[.]xyzandbtcpoolok[.]cloud: Fake BTC mining pools.cineotv[.]one: Pretends to be a BBC streaming service.
-
Telegram Bots:
@Zerocap01_bot,@SpiderPool01_bot,@AiSuperBtc, and@AiSuperBtcVIP01are associated with the phishing domains.@BBC_Serve: Linked to the fake BBC streaming service.
-
API Endpoints:
/api/public/init: Ex
Read the full article at Cyber Security News
Want to create content about this topic? Use Nemati AI tools to generate articles, social posts, and more.

![[AINews] The Unreasonable Effectiveness of Closing the Loop](/_next/image?url=https%3A%2F%2Fmedia.nemati.ai%2Fmedia%2Fblog%2Fimages%2Farticles%2F600e22851bc7453b.webp&w=3840&q=75)



