Bitcoin Forum

Other => Meta => Topic started by: SiNeReiNZzz on November 26, 2020, 02:44:49 PM



Title: [MALWARE SCAM] ᗌ PhoenixMiner ᗏ Please check!
Post by: SiNeReiNZzz on November 26, 2020, 02:44:49 PM
After I stumbled across a malware infected update earlier, I checked the link with the files in the OP again.
And behold, even though the OP took a lot of merit and is from 2017, it now leads to files that are more than full of malware! (See VirusTotal-Scan (https://www.virustotal.com/gui/file/fb439a00e77f5735725824a97d8912955f1088ac87a5876f622659201a7d8ffc/relations))
I think that this OP may have been clean in the past and has not been checked for a long time, due to its age.

https://i.ibb.co/W5Hy5Ff/Screenshot-2020-11-26-Phoenix-Miner-5-2e-fastest-Ethereum-Ethash-miner-with-lowest-devfee-Win-Linux.png

If you download the complete ZIP archive from link in the OP (shown above circled in red) and check it via VirusTotal this comes out as a result:

https://i.ibb.co/VYY25qm/Screenshot-2020-11-26-Virus-Total.png

Virus Total: https://www.virustotal.com/gui/file/fb439a00e77f5735725824a97d8912955f1088ac87a5876f622659201a7d8ffc/detection

Thread/Post: https://bitcointalk.org/index.php?topic=2647654.msg26969355#msg26969355 <---- IF NECCESARY DELETE PLEASE

Profile Link: PhoenixMiner (https://bitcointalk.org/index.php?action=profile;u=1522040) <---- IF NECCESARY BAN PLEASE

Archive- LINK (https://archive.is/3tnRW#msg26969355)

Code:
https://mega.nz/#F!2VskDJrI!lsQsz1CdDe8x5cH3L8QaBw

PhoenixMiner.zip


Title: Re: [MALWARE SCAM] ᗌ PhoenixMiner ᗏ Please check!
Post by: bL4nkcode on November 26, 2020, 02:52:29 PM
AFAIK most of the miner in .exe files are detected as malware by most AV, I only guess a false positive though. Will wait other respond regarding this.


Title: Re: [MALWARE SCAM] ᗌ PhoenixMiner ᗏ Please check!
Post by: SiNeReiNZzz on November 26, 2020, 03:02:49 PM
AFAIK most of the miner in .exe files are detected as malware by most AV, I only guess a false positive though. Will wait other respond regarding this.

Yes, I thought about that for a moment. That's why I wrote in the headline that it should please be checked...


Title: Re: [MALWARE SCAM] ᗌ PhoenixMiner ᗏ Please check!
Post by: bL4nkcode on November 26, 2020, 03:12:06 PM
Yes, I thought about that for a moment. That's why I wrote in the headline that it should please be checked...
I'd checked claymore's dual ethereum (https://bitcointalk.org/index.php?topic=1433925.0) miner as well, and it turns out the same, it even much worse than the phoenixminer, "48 engines detected this file"

https://www.virustotal.com/gui/file/152eb2d7325a594fb446b81373615fa7eabc4c0133dcfaab056706b4a5688b01/detection