Incident Report: Theft of $3,000,000 via “SamFW Tool”This post serves as a public warning to the developer community and cryptocurrency users: Đặng Thanh Tùng (Tungtata) , the founder of SamFW and MiFirm.net , is a scammer responsible for the distribution of malicious software designed to facilitate financial theft.
On June 23, 2026, a user installed the “SamFW Tool” (version 5.4) from samfw.com. Within moments of execution, the software—which contains sophisticated, hidden trojan/malware functionality—compromised the system, resulting in the theft of 10,000 XMR (valued at approximately $3,000,000 USD) from a Feather Wallet and the systematic deletion of all local data.Evidence of Malicious IntentTampering: Following the theft, the suspect immediately removed version 5.4 from the public domain and replaced it with a “revised” version (5.5.1) to obscure the malware payload.
Admission of Guilt: When confronted, Đặng Thanh Tùng did not deny the operation; instead, he mocked the victim, telling them to “report it to the police” before blocking all lines of communication.Malware Infrastructure: The “SamFW Tool” is confirmed to house remote access trojans (RATs) capable of monitoring sensitive data and wallet keys.
Identified Suspect DetailsName: Đặng Thanh Tùng (Tungtata)Location: Hanoi, Vietnam (Operating via Quynh Chi Investment and Technology Co. Ltd.)
Keywords:
Tungtata scam, Tungtata fraud, Dang Thanh Tung scam, samfw scam, samfw malware, samfw trojan, samfw security risk, samfw suspicious software, Tungtata trojan virus, samfw warning, Đặng Thanh Tùng scammer, owner Đặng Thanh Tùng fraud, tungtata scam, DangThanhTung scammer, DangThanhTung fraud, DangThanhTung rat trojan

