• Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
Sunday, September 14, 2025
  • Login
  • Register
Coin24h.com
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
No Result
View All Result
Coin24h.com
No Result
View All Result
Ledger Nano X - The secure hardware wallet
ADVERTISEMENT

Cryptojacking Not Dead Yet | Decipher

19 August 2022
in Mining
Reading Time: 2 mins read
A A
0
Cryptojacking Not Dead Yet | Decipher
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter
cryptotrader
ADVERTISEMENT

Related articles

No, Russia did not just lift its ban on domestic crypto use

No, Russia did not just lift its ban on domestic crypto use

30 July 2024
New US Bitcoin Mining Hardware Creates B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

New US Bitcoin Mining Hardware Creates $20B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

30 July 2024

The alleged value of cryptocurrencies may have taken a major hit in the last few months, but that hasn’t stopped attackers from continuing their use of cryptojackers to surreptitiously hijack victims’ processing power to mine coins.

Microsoft researchers have been tracking some recent campaigns that are abusing legitimate binaries on victims’ machines to stay persistent, rather than injecting malicious code into the browser or running a malicious executable on the target computer. Microsoft has seen more than 500,000 machines with malicious cryptojackers on them consistently throughout the summer, and researchers say the campaigns do not seem to be abating.

Cryptojackers are small applications that hijack the processing power of victims’ computers in order to mine cryptocurrency. They have been circulating for more than a decade and their popularity tends to wax and wane in concert with the value of popular currencies such as Bitcoin and Ethereum. Most cryptojackers aren’t outwardly malicious aside from using system resources without the user’s knowledge, but they can be conduits for other unwanted apps.

The campaign that Microsoft’s 365 Defender Research Team has been tracking uses the currently popular fileless approach to cryptomining, a tactic that is less obvious to security tools but still uses a significant amount of processing power.

“We analyzed an interesting cryptojacking campaign abusing notepad.exe and several other binaries to carry out its routines. This campaign used an updated version of the cryptojacker known as Mehcrypt. This new version packs all of its routines into one script and connects to a command-and-control (C2) server in the latter part of its attack chain, a significant update from the old version, which ran a script to access its C2 and download additional components that then perform malicious actions,” the researchers said.

“The threat arrives as an archive file containing autoit.exe and a heavily obfuscated, randomly named .au3 script. Opening the archive file launches autoit.exe, which decodes the .au3 script in memory. Once running, the script further decodes several layers of obfuscation and loads additional decoded scripts in memory.”

This campaign specifically abuses the notepad.exe binary that is ever-present on Windows machines and has become a popular target for cryptojackers. Because Notepad is always available and its presence in a list of running programs wouldn’t attract much attention, it makes for an attractive and practical target. The actors behind this campaign maintain persistence by adding autostart registry keys that run a script each time the machine starts. The script connects to the remote C2 server and will then inject itself into notepad.exe when instructed by the server. That kicks off the mining process, which in turn spikes the processor’s usage.

“The executable and browser-based approaches involve malicious code that’s present in either the filesystem or website that can be relatively easily detected and blocked. The fileless approach, on the other hand, misuses local system binaries or preinstalled tools to mine using the device’s memory. This approach allows attackers to achieve their goals without relying on specific code or files. Moreover, the fileless approach enables cryptojackers to be delivered silently and evade detection. These make the fileless approach more attractive to attackers,” the Microsoft researchers said.

Many antimalware applications detect typical cryptojackers and cryptominers, but checking which apps are using significant system resources and identifying anomalies can be another way to find potential problems.

Source link

Cryptohopper
ADVERTISEMENT
[crypto-donation-box]
Tags: CryptoJackingDeadDecipher
Share76Tweet47
Ledger Nano X - The secure hardware wallet
Previous Post

Reviewing the Potential of Supontis Token Next Cryptocurrencies Like BNB and Chainlink

Next Post

Many Bored Ape NFTs Are in Danger of Getting Liquidated as Borrowed Money Comes Back to Bite

Related Posts

No, Russia did not just lift its ban on domestic crypto use

No, Russia did not just lift its ban on domestic crypto use

30 July 2024
0

A fake news story circulated today about Russia’s supposed embrace of bitcoin mining and crypto payments. According to excited social...

New US Bitcoin Mining Hardware Creates B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

New US Bitcoin Mining Hardware Creates $20B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

30 July 2024
0

A new report estimates a $20 billion revenue opportunity in Bitcoin BTC/USD mining chips and hardware over the next five...

Russia Races to Legalize Crypto as Sanctions Weigh On Firms – BNN Bloomberg

Russia Races to Legalize Crypto as Sanctions Weigh On Firms – BNN Bloomberg

30 July 2024
0

(Bloomberg) -- Russia is moving to regulate the use of cryptocurrencies, as companies wrestle with increasing difficulties in foreign payments...

Russia Advances Crypto and Mining Regulations as US Sanctions Impact Economy

Russia Advances Crypto and Mining Regulations as US Sanctions Impact Economy

30 July 2024
0

The Russian central bank plans to initiate international payments in cryptocurrencies by the end of the year to overcome delays...

Wall Street Bitcoin Miner Taps Institutional Investor for £6.5 Million Capital Boost

Wall Street Bitcoin Miner Taps Institutional Investor for £6.5 Million Capital Boost

30 July 2024
0

Listed both on Wall Street and the London Stock Exchange (LSE) Bitcoin miner Argo Blockchain, has announced a £6.5 million...

Load More
Next Post
Many Bored Ape NFTs Are in Danger of Getting Liquidated as Borrowed Money Comes Back to Bite

Many Bored Ape NFTs Are in Danger of Getting Liquidated as Borrowed Money Comes Back to Bite

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Plugin Install : Widget Tab Post needs JNews - View Counter to be installed
  • Trending
  • Comments
  • Latest
Ethereum Foundation Releases Roadmap To End-To-End Privacy

Ethereum Foundation Releases Roadmap To End-To-End Privacy

14 September 2025
Bitcoin Price Today; Solana Latest News & How Layer Brett Is Set For 4,000% Gains In 2025 – CoinCentral

Bitcoin Price Today; Solana Latest News & How Layer Brett Is Set For 4,000% Gains In 2025 – CoinCentral

14 September 2025
BNB and ALR Miner Cloud Mining Combine to Create a New Era of Efficient Crypto Investment – nerdbot

BNB and ALR Miner Cloud Mining Combine to Create a New Era of Efficient Crypto Investment – nerdbot

14 September 2025
🚨SOLANA EMERGENCY ALERT: THE NEXT 2 HOURS COULD CHANGE EVERYTHING! 🔥⚡ – Binance

🚨SOLANA EMERGENCY ALERT: THE NEXT 2 HOURS COULD CHANGE EVERYTHING! 🔥⚡ – Binance

14 September 2025

About Us

We publish a comprehensive news feed covering all news relevant to the crypto user, covering main industry news, politics and regulation as well as consumer-level “news you can use” (practical stuff), including handy DIY tips, links to useful tools, unbiased reviews and opinions revolving around cryptocurrency. Simple logic and real-world examples are preferred before technical jargon and personal rants.

Categories

  • Altcoin
  • ApeCoin
  • Bitcoin
  • Blockchain
  • BNB
  • Cardano
  • Cryptocurrency
  • DOGE
  • DOT
  • Ethereum
  • HBAR
  • Litecoin
  • Market
  • Meta News
  • Mining
  • NFT
  • QNT
  • Regulation
  • SHIBA
  • Solano
  • Tether
  • Uncategorized
  • XDC
  • XLM
  • XRP

What’s New Here!

  • Ethereum Foundation Releases Roadmap To End-To-End Privacy
  • Bitcoin Price Today; Solana Latest News & How Layer Brett Is Set For 4,000% Gains In 2025 – CoinCentral
  • BNB and ALR Miner Cloud Mining Combine to Create a New Era of Efficient Crypto Investment – nerdbot
  • 🚨SOLANA EMERGENCY ALERT: THE NEXT 2 HOURS COULD CHANGE EVERYTHING! 🔥⚡ – Binance
  • $940 BNB Peak Stuns The Financial World – Cointribune

Subscribe Now

Our Partner

Round Main Logo
  • About Us
  • Privacy Policy
  • Contact Us

© 2022-2025 coin24h.com

No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining

© 2020 coin24h.com

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
  • bitcoinBitcoin (BTC) $ 115,452.00
  • ethereumEthereum (ETH) $ 4,625.30
  • xrpXRP (XRP) $ 3.04
  • tetherTether (USDT) $ 1.00
  • solanaSolana (SOL) $ 244.28
  • bnbBNB (BNB) $ 930.13
  • usd-coinUSDC (USDC) $ 0.999807
  • dogecoinDogecoin (DOGE) $ 0.282635
  • staked-etherLido Staked Ether (STETH) $ 4,618.11
  • tronTRON (TRX) $ 0.348800
  • cardanoCardano (ADA) $ 0.890580
  • wrapped-stethWrapped stETH (WSTETH) $ 5,606.48
  • chainlinkChainlink (LINK) $ 24.18
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 4,987.03
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 115,503.00
  • hyperliquidHyperliquid (HYPE) $ 54.17
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • suiSui (SUI) $ 3.70
  • wrapped-eethWrapped eETH (WEETH) $ 4,971.85
  • figure-helocFigure Heloc (FIGR_HELOC) $ 1.00
  • avalanche-2Avalanche (AVAX) $ 29.34
  • stellarStellar (XLM) $ 0.389431
  • bitcoin-cashBitcoin Cash (BCH) $ 595.64
  • wethWETH (WETH) $ 4,628.12
  • hedera-hashgraphHedera (HBAR) $ 0.239308
  • leo-tokenLEO Token (LEO) $ 9.56
  • litecoinLitecoin (LTC) $ 115.09
  • the-open-networkToncoin (TON) $ 3.17
  • shiba-inuShiba Inu (SHIB) $ 0.000014
  • crypto-com-chainCronos (CRO) $ 0.238381
  • usdsUSDS (USDS) $ 0.999773
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 115,560.00
  • polkadotPolkadot (DOT) $ 4.34
  • whitebitWhiteBIT Coin (WBT) $ 43.96
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.20
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.212608
  • uniswapUniswap (UNI) $ 9.49
  • moneroMonero (XMR) $ 289.96
  • mantleMantle (MNT) $ 1.60
  • ethenaEthena (ENA) $ 0.738360
  • pepePepe (PEPE) $ 0.000011
  • aaveAave (AAVE) $ 305.50
  • daiDai (DAI) $ 1.00
  • bitget-tokenBitget Token (BGB) $ 4.97
  • memecoreMemeCore (M) $ 2.56
  • okbOKB (OKB) $ 199.13
  • jito-staked-solJito Staked SOL (JITOSOL) $ 300.86
  • nearNEAR Protocol (NEAR) $ 2.71
  • bittensorBittensor (TAO) $ 348.91