• Advertise
  • Submit a Press Release
  • About Us
NewsBTC
Bitcoin & cryptocurrency news
Sensei Inu Logo
  • News
    • Bitcoin
    • Ethereum
    • Cardano
    • Dogecoin
    • Ripple
    • DeFi
    • NFT
    • Sponsored
    • Press Releases
    • Research
    • Gambling
      • Crypto Casinos
      • Real Money Casinos
    • Casinos not on Gamstop
  • Analysis
    • Bitcoin (BTC)
    • Ethereum (ETH)
    • Cardano (ADA)
    • Chainlink (LINK)
    • Litecoin (LTC)
    • Tezos (XTZ)
    • Zcash (ZEC)
    • EOS
    • YearnFinance (YFI)
  • Learn
    • Trading Course
  • Directory
    • Crypto Businesses
    • Bitcoin Brokers
    • Casinos
    • Sportsbooks
    • Categories
  • Events
  • Play GamesTry
  • Win 8.88 BTCTry
  • Play Casino GamesTry
  • Play FinanceTry
No Result
View All Result
Breaking News: Fed Holds Interest Rates Steady, Bitcoin Awaits Trend Reversal Above $27,000
  • News
    • Bitcoin
    • Ethereum
    • Cardano
    • Dogecoin
    • Ripple
    • DeFi
    • NFT
    • Sponsored
    • Press Releases
    • Research
    • Gambling
      • Crypto Casinos
      • Real Money Casinos
    • Casinos not on Gamstop
  • Analysis
    • Bitcoin (BTC)
    • Ethereum (ETH)
    • Cardano (ADA)
    • Chainlink (LINK)
    • Litecoin (LTC)
    • Tezos (XTZ)
    • Zcash (ZEC)
    • EOS
    • YearnFinance (YFI)
  • Learn
    • Trading Course
  • Directory
    • Crypto Businesses
    • Bitcoin Brokers
    • Casinos
    • Sportsbooks
    • Categories
  • Events
  • Play GamesTry
  • Win 8.88 BTCTry
  • Play Casino GamesTry
  • Play FinanceTry
No Result
View All Result
Bitcoin News
No Result
View All Result
Breaking News: Fed Holds Interest Rates Steady, Bitcoin Awaits Trend Reversal Above $27,000
ghostminer
Sensei Inu Logo

GhostMiner: Crypto-Jacking Software Removes Other Miners so It Can Mine Monero

newsbtc by newsbtc
6 years ago
in Uncategorized
Reading Time: 2 mins read

Security researchers at Minerva Labs have uncovered a new strain of cryptocurrency mining malware, dubbed GhostMiner, which uses “fileless” malware delivery techniques to land on systems. What makes it particularly remarkable is that if other crypto-jacking malware is already in the system, it will fight to remove it so it can mine Monero itself.

That said, in spite of this novel and advanced technique, Ghostminer has — as of yet — failed to earn any substantial revenue for its creators: after a three-week-long campaign, GhostMiner only racked up 1.03 Monero, which as of now is worth just over $200. This, of course, is nothing compared to other operations, like the Jenkins miner, which made over $3 million in Monero earlier this year.

Advanced Techniques

While GhostMiner, as of yet, has not been a financial success, the malware is certainly not a technical fiasco.

First off, this approach is the first fileless crypto-mining malware strain detected. The fileless technique has become quite popular with malware in recent years, allowing operations to run malicious code directly from memory, without leaving files on disk, therefore leaving fewer clues for antivirus engines to detect.

Further, GhostMiner employs other advanced techniques to hunt down competing miners and shutting down their processes. These include killing running miners by using PowerShell’s “Stop-Process-force” command with the aid of a hard-coded blacklist, stop and delete blacklisted miners, and even removing miners which are run as blacklisted scheduled tasks.

As for targeting, GhostMiner can infect systems running MSSQL, phpMyAdmin, and Oracle WebLogic servers. But according to Minerva Labs experts, only the WebLogic infection system was active when they analyzed the recent campaign.

While the techniques utilized by GhostMiner aren’t necessarily new by themselves, this is the first time they have been used together in one malicious application. And one thing’s for sure, they illustrate that GhostScript’s operators put a lot of thought into assembling their code, which shows just how far malware developers are willing to go to earn their illicit gains. 

Minerva Labs

Despite it’s lack of apparent monetary success so far, Minerva researchers couldn’t let GhostMiner’s authors efforts go to waste: the firms researchers have decided to turn the tables by using GhostMiner’s advanced competition-killing techniques against it and other mining malware.

The anti-malware platform has released a script, extracted from GhostMiner, that they call MinerKiller. “It implements all the aforementioned tactics – removing known processes, tasks, and services by name and unfamiliar ones by arguments or TCP connections typical to miners,” Minerva Labs said.

MinerKiller can be downloaded from GitHub, but Minerva Labs includes a warning: it’s not liable for any misuse of the script and users should take time to understand it thoroughly before use.

Tags: crypto-jackingcryptocurrencyfilelessGhostMinerGithubmalwareMinerKillerMinerva Labsmonero
Tweet123Share196ShareSend
newsbtc

newsbtc

Related Posts

Bitcoin crypto Fed treasury yields

Bitcoin And Crypto Face Turbulence As 10-Year US Treasury Yield Hits 15-Year High

5 mins ago
The Future Landscape of ASIC Miners

The Future Landscape of ASIC Miners

49 mins ago
XRP

XRP Hurdle In The Run-Up To ‘Proper Party’ – Will Altcoin Price Slip?

1 hour ago
Bitcoin

Investment Firm Founder Has An Important Message For Bitcoin Holders

2 hours ago
XRP price bull run

ASO Bullish Cross Reveals Bull Run Start For XRP: Crypto Analyst

3 hours ago
MakerDAO

MakerDAO (MKR) Recent Rally Signals Potential For New Highs – $1,700 On The Horizon?

5 hours ago

Premium Partners

Play Finance

Top Casinos

BitStarz

BitStarz

Review · Visit
Punt Casino

Punt Casino

Review · Visit
Trust Dice

Trust Dice

Review · Visit
mBit

mBit

Review · Visit

Press Releases

  • Uwerx’s Recovery Blueprint Ignites Momentum With The...

    2 hours ago
  • Pocket Option Trading Company Is Second In TU’s Best...

    18 hours ago
  • Bitcoin Spark Drives Home Solana Killer Narrative Raising...

    21 hours ago
  • Shiba Inu, Bone ShibaSwap or Kangamoon: Which Meme Coin Can...

    22 hours ago
  • Top Three Must-Have Tokens for Investors In 2023 –...

    22 hours ago

About Us

NewsBTC is a cryptocurrency news service that covers bitcoin news today, technical analysis & forecasts for bitcoin price and other altcoins. Here at NewsBTC, we are dedicated to enlightening everyone about bitcoin and other cryptocurrencies.

We cover BTC news related to bitcoin exchanges, bitcoin mining and price forecasts for various cryptocurrencies.

Cryptocurrency news

  • Bitcoin
  • Ethereum
  • Ripple
  • Chainlink
  • Cardano
  • EOS
  • Tezos

Technical Analysis

  • Bitcoin (BTC)
  • Ethereum (ETH)
  • Ripple (XRP)
  • Chainlink (LINK)
  • Cardano (ADA)
  • Tezos (XTZ)

Company

  • Advertising
  • Comments Policy
  • Privacy Center
  • Sitemap
  • About Us
  • Contact

© 2023 NewsBTC. All Rights Reserved.

  • News
    • Bitcoin
    • Ethereum
    • Cardano
    • Dogecoin
    • Ripple
    • DeFi
    • NFT
    • Sponsored
    • Press Releases
    • Research
    • Gambling
      • Crypto Casinos
      • Real Money Casinos
    • Casinos not on Gamstop
  • Analysis
    • Bitcoin (BTC)
    • Ethereum (ETH)
    • Cardano (ADA)
    • Chainlink (LINK)
    • Litecoin (LTC)
    • Tezos (XTZ)
    • Zcash (ZEC)
    • EOS
    • YearnFinance (YFI)
  • Learn
    • Trading Course
  • Directory
    • Crypto Businesses
    • Bitcoin Brokers
    • Casinos
    • Sportsbooks
    • Categories
  • Events
  • Play Games
  • Win 8.88 BTC
  • Play Casino Games
  • Play Finance

© 2023 NewsBTC. All Rights Reserved.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy Center or Cookie Policy.