Just a heads up, sadly your game is being used as an avenue to scam folks on Discord.
I recommend at least changing your images out (can just be a delete and reupload of the images.) as they are using the actual images from your page directly.
It would at least somewhat curb their scamming.
It's a shame as this game DOES look really good.
This is still happening today
promat — Today at 02:39
me and my friend made a new project, can you help us to finish?
Seshling — Today at 02:40
What u need help with
promat — Today at 02:42
It's 2D adventured project, we need peoples who can play and give review for 5-10 minutes.
Seshling — Today at 02:43
Sure why not
promat — Today at 02:44
ty- [02:44]https://yemozagame.blogspot.com/2024/08/yemoza-beta.html my game website
Just be careful, the initial payload, the setup is what steals your cookies, discord token, a screenshot of your screen, wallets (I assume crypto wallets by the file name), and apparently it... might try to download your desktop, documents, etc when looking at the files it creates/created then it also has a nodejs app which acts as a persistent rat, it is in your appdata temp, has the nodejs icon, it is run via the open vbs script and that is opened/called by a vbs script in your startup folder, so while it is easy to disable once you figure it out, it is not something you want to risk getting infected with either
I don't think it should but you can always check your startup folder just to be safe. Also could you by chance send me the file and/or password? I found one of the new sites they use but they have it password protected and this time, they didn't provide the password on the page so I can't access the executable or see the domain they are exporting the data to (so I can report it to the domain registrar's and such)
I found this game through image search I did on a scam link today
⚠️ Just a warning that the links below lead to a malicious file ⚠️
The link would be "sytodepth dot blogspot dot com/2025/03/sytodepth.html", password being "sytodepthfull", rar link would be "dropbox dot com/scl/fi/dz9xi4objv0dfzyneq8fi/SytoDepth.rar?rlkey=ktbkzih1g68tun29sadrav9z8&st=ot2ef4fa&dl=1"
Have fun analyzing the file, hope it helps you or your curiousity out, analyzed it in triage already and it does sussy wussy stuff
A shame people use game assets to promote a scam executable file
Just got sent one today from an old friend.
⚠️⚠️malicious files below
The link i was given was "https://mulenugame dot blogspot dot com/2025/03/mulenu-game dot html" and the password given was "mulenubeta"
After this they sent a second link "https://www dot dropbox dot com/scl/fi/zfbncnd2hgison5p0ext8/Yomira dot rar?rlkey=3pgpvtdohb3mnbj1ybjvj33qs&st=9lzhcou2&dl=1" and the password for this one was "yomirabeta"