Security researchers from Qihoo 360 Total Security have detected a massive malware campaign spreading a new coinminer, and which appears to have made roughly 500,000 victims in three days alone.
At the heart of this campaign is a new malware strain named
WinstarNssmMiner, targeting Windows computers.
Under the hood, WinstarNssmMiner is your typical cryptocurrency-mining malware these days, based on the open-source and legitimate Monero mining utility named XMRig.
WinstarNssmMiner shuts down AV products
Qihoo 360 researchers did not say how WinstarNssmMiner spreads, but they said this coinminer is unique to other cryptocurrency-mining threats active on the market today.
The typical WinstarNssmMiner modus operandi, according to researchers, is the following:
...
.....
.......