|
|
Yahoo Malware Turned PCs Into Bitcoin Miners - TechAmok
Yahoo Malware Turned PCs Into Bitcoin Miners - [security] 03:42 PM EST - Jan,09 2014 - post a comment Researchers at security firm Light Cyber revealed this week that one of the malware programs aimed to use the resources of infected PCs to perform the calculations necessary to run a Bitcoin network. Revealed earlier this month by fellow security firm Fox IT, the campaign spread its package by using Yahoo's ad server to deploy malicious ads. The malware took advantage of vulnerabilities in Java to install itself on computers that visited the ads.yahoo.com site. So far, Yahoo hasn't revealed any details on the infected computers or publicly advised affected users on what they should do. But security firm Surfright shed a bit more light on the situation.
Not every ad on the Yahoo advertisement network contained the malicious iframe, but if you have an outdated version of Java Runtime (you can check here) and you used Yahoo Mail the last 6 days, your computer is likely infected.
Communication with the following Internet domains is an indication of a positive infection of the communicating computer:
kmymmeiaoooigke.org
bgdjstkwkbhagnp.org
ceigqweqwaywiqgu.org
smsfuzz.com
Communication with the following Internet domains/IP addresses is an indication of a possible infection:
blistartoncom.org
doesexisted.in
formsgained.in
funnyboobsonline.org
goodsdatums.in
locationmaking.in
mejudge.in
operatedalone.in
original-filmsonline.com
preferringbad.in
savedesiring.in
slaptoniktons.net
slaptonitkons.net
stopsadvise.in
yagerass.org
192.133.137.100
192.133.137.247
192.133.137.56
192.133.137.59
192.133.137.63
193.169.245.74
193.169.245.76
The existence of the following files is an indication of a positive infection:
%windows%\Installer\{4A74FBA7-71A0-BEA1-F538-72E3D519AA4F}\syshost.exe
%localappdata%\cygwin1.dll (See note 1)
%localappdata%\wuauclt.exe (See note 1)
%localappdata%\temp\????????.lnk (8 hex characters)
%localappdata%\temp\????????.exe (8 hex characters)
%localappdata%\temp\vedefuzunwi.exe
%programdata%\bbtmp0\jtkyygiu.exe
c:\temp\zcompute.exe
(1) filename is used by legitimate software but not in the listed path
|
|
Add your comment (free registrationrequired)
Short overview of recent news articles |
|
Jan,25 2026 Windows 11 Best For Gaming? Windows 11 25H2 vs. Windows 10 Jan,24 2026 Microsoft Says Uninstall This Windows Update Immediately (KB5077744 Jan,22 2026 Xbox Developer Direct Livestream 2026 | Fable, Forza Horizon 6, Jan,22 2026 Iridium Begins Testing its own Satellite Service for Phones Jan,22 2026 AMD Releases Adrenalin Edition 26.1.1 WHQL Drivers Jan,18 2026 AI in 2050 Jan,17 2026 iOS 26.2 Fixes Major Security Flaws Jan,17 2026 Google Links its AI to Your Gmail and Photos for "Personal Jan,17 2026 Fastest Koenigsegg v Fastest Bugatti: DRAG RACE Jan,17 2026 Creating a 48GB NVIDIA RTX 4090 GPU Jan,14 2026 CES was frickin weird, guys Jan,12 2026 Lee Cronin's The Mummy - Official Teaser Trailer (2026) Jack Jan,12 2026 Ferrari SF90 XX v Xiaomi SU7 Ultra: DRAG RACE Jan,10 2026 Welcome to the Wasteland - Fallout (American TV series) fan video Jan,09 2026 GOOD LUCK, HAVE FUN, DON'T DIE Trailer 2 (2026) Sam Rockwell Jan,07 2026 NVIDIA Releases GeForce 591.74 WHQL Drivers with DLSS 4.5 Support Jan,07 2026 Predator: Badlands Exclusive Deleted Scene (2025) Jan,06 2026 Greenland 2: Migration - Official Trailer 3 (2026) Gerard Butler, Jan,05 2026 The Best Laptops of 2025 - For Gaming, Creators & Students! Jan,05 2026 Punkt Updates its Privacy-Focused Smartphone Jan,05 2026 Clicks Launches New Ways to Add a Physical Keyboard to Your Life Jan,05 2026 Building a PC for the First Time Jan,03 2026 Building a PC in 2026 Jan,02 2026 I want this phone so bad... - Samsung Galaxy Z TriFold Jan,02 2026 The Real Finewine Strikes Again: Ryzen 5600X, 5700X & 5800XT Revisit Jan,02 2026 Nokia N8 Symbian Re-Awakened With Passion Jan,02 2026 Europe Forces Apple to Open up More of iOS Jan,02 2026 Must have Privacy and Security Tweaks: 2026 Edition Jan,01 2026 How Did RAM Get So Expensive?! Dec,31 2025 GeForce RTX 5090 prices to soar to $5,000 as NVIDIA and AMD prep GPU Dec,30 2025 Hacker arrested for KMSAuto malware campaign with 2.8 million Dec,29 2025 Killer Whale - Official Trailer (2026) Virginia Gardner, Mel Dec,28 2025 NVIDIA Showed Me Their Supercomputer Dec,28 2025 2026 CPU Launches! AMD, Intel & NVIDIA: Buy Now or Wait? Dec,27 2025 Disable this Windows Feature that Secretly Eats Up RAM! Dec,27 2025 New Windows 11 vs Old Malware: Will it survive? Dec,27 2025 Samsung TriFold Durability Test: We found the limit Dec,26 2025 TRUST WALLET CONFIRMS SECURITY BREACH Dec,26 2025 Xiaomi 17 Ultra Leads And Samsung To Follow With A 10 Percent Price Dec,25 2025 Merry Christmas Gaming Insanity
>> News Archive <<
| |
|