Warning Made on Cross-Platform Cryptominer
#1
Quote:ESET has warned of cross-platform software which is used to mine cryptocurrency.
 
Named LoudMiner, the malware uses virtualization software – QEMU on macOS and VirtualBox on Windows – to mine cryptocurrency on a Tiny Core Linux virtual machine. LoudMiner is distributed in pirated copies of audio software called VST (Virtual Studio Technology) and once an endpoint is infected, LoudMiner uses the compromised machines to mine cryptocurrency and uses SCP (Secure File Copy) with an embedded username and private SSH key to self-update.
 
ESET researchers said that the miner itself is based on XMRig (Monero) and uses a mining pool, and therefore it is impossible to retrace potential transactions.
“At the time of writing, there are 137 VST-related applications (42 for Windows and 95 for macOS) available on a single WordPress-based website with a domain registered on 24th August, 2018,” researchers said.
“The first application – Kontakt Native Instruments 5.7 for Windows – was uploaded on the same day. The size of the apps makes it impractical to analyze them all, but it seems safe to assume they are all Trojanized.”

SOURCE: https://www.infosecurity-magazine.com/ne...yptominer/
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Messages In This Thread
Warning Made on Cross-Platform Cryptominer - by silversurfer - 21 June 19, 10:51

Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Linux 7.0 merges AMDGPU update for decad...
All thanks to Valv...harlan4096 — 17:55
AdGuard for iOS v4.5.16
AdGuard for iOS v4...harlan4096 — 07:24
QOwnNotes
26.2.9  Fixed a v...Kool — 05:38
AdGuard for Android 4.12.3
AdGuard for Androi...harlan4096 — 17:18
Replit Pro – One Month Free
Replit Pro     C...hanso — 17:02

[-]
Birthdays
Today's Birthdays
No birthdays today.
Upcoming Birthdays
avatar (46)dimaWeami
avatar (44)Baihu

[-]
Online Staff
harlan4096's profile harlan4096
Administrator
Decimuss's profile Decimuss

>