WARNING! New Stealthy CryptoJacking Malware Mimics Adobe Flash Update And The Update Actually Works!

in #news6 years ago (edited)

The cryptojacking craze began with a Monero mining script provided by CoinHive that allowed anyone to easily implement a mining script into their website to utilize its visitors PC's to illegally mine cryptocurrencies without their consent, or knowledge. Ever since, this illegal trend has been on the increase. Mostly because of its ease of implementation and massive potential profits.

Many anti-virus service providers and Google itself have been trying to stop this inciduous trend. They have been somewhat successful in it but, recently a new type of the malware came to existence that might prove to be very hard to fight against.

fake adobe flash update crypto malware.JPG

In in a cyber threat report published by Unit 42 research group on Oct. 11. They warn about this "Trojan Horse" malware that conceals itself behind a fake Adobe Flash update. This wouldn't be a big issue if the "update" itself didn't work because then, users could figure out that something isn't right but, it does. If you come accross it and manage to download and install it, it will actually update your Adobe Flash. Thus, many users don't recognize it as a potential threat making the malware potentially, very harmful.

As stated in the research by Unit 42, Palo Alto Networks threat intelligence team, the malware surreptitiously makes infected computers mine Monero (XMR) by installing an “XMRig cryptocurrency miner.”

Combined with the fact that it actually installs the update its concealed to be, it makes this cryptojacking malware very stealthy for average users. Majority of unsuspecting people that come accross it, most likely won't realize it's a malware, so beware!

Although obviously not the only way to infect PC's with a crypto mining script. This fake Adobe Flash update that hyjack users PC's to mine Monero is quickly gaining popularity amongst malicious users so, you might run into it sooner than you might think. Please pay close attention to the update you are installing and the source you are getting it from. If it's not from Adobe, burn that shiet. Throw it in the recycle bin and quickly empty it.

TIP: install No Coin browser extension.

no coin browser extension.JPG

It will prevent mining scripts from utilizing your PC's power to mine crypto without your consent.

P.S.
It's open source.

Feel free to view the source, fork it, raise issues and submit your improvements via pull requests.
You can find on Github:
https://github.com/keraf/NoCoin/

Stay safe and spread the word around!

Sort:  

Dang, thanks for the heads up buddy.

Scary stuff, eh? Np :)

Hi @runicar!

Your post was upvoted by @steem-ua, new Steem dApp, using UserAuthority for algorithmic post curation!
Your UA account score is currently 4.901 which ranks you at #1172 across all Steem accounts.
Your rank has improved 9 places in the last three days (old rank 1181).

In our last Algorithmic Curation Round, consisting of 244 contributions, your post is ranked at #147.

Evaluation of your UA score:
  • Some people are already following you, keep going!
  • The readers like your work!
  • Try to work on user engagement: the more people that interact with you via the comments, the higher your UA score!

Feel free to join our @steem-ua Discord server

Coin Marketplace

STEEM 0.30
TRX 0.12
JST 0.034
BTC 63960.62
ETH 3142.95
USDT 1.00
SBD 3.95