Bitcoin Forum
June 05, 2024, 12:36:11 AM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: « 1 [2]  All
  Print  
Author Topic: Am I infected by Trojan Miner ?  (Read 2353 times)
Katarina
Member
**
Offline Offline

Activity: 112
Merit: 10


View Profile
August 26, 2014, 07:48:22 AM
 #21

I ran a netstat on my machine and found a certain connection with a foreign address...

pool-108-51-140-90:14905

Does anyone know what is this ? Is it a mining pool where I am connected ?

Check your CPU usage, it should be really high like 60% and above if someone is mining on your computer..

Who would even still try and mine bitcoins with others CPU's.

Most trojan miner mine using CPU instead, cause everyone have a cpu and not GPU....
DrG
Legendary
*
Offline Offline

Activity: 2086
Merit: 1035


View Profile
August 26, 2014, 07:49:42 AM
 #22

I ran a netstat on my machine and found a certain connection with a foreign address...

pool-108-51-140-90:14905

Does anyone know what is this ? Is it a mining pool where I am connected ?

Check your CPU usage, it should be really high like 60% and above if someone is mining on your computer..

Who would even still try and mine bitcoins with others CPU's.

People who have an automated script to go an infect multiple machines.  They don't need to manually control your machine, they can controls herds of machines - BOTNET.

Although botnets could probably make more money doing something other than mining.
BitCoinDream (OP)
Legendary
*
Offline Offline

Activity: 2338
Merit: 1204

The revolution will be digital


View Profile
August 26, 2014, 08:25:21 AM
 #23

I ran a netstat on my machine and found a certain connection with a foreign address...

pool-108-51-140-90:14905

Does anyone know what is this ? Is it a mining pool where I am connected ?

Check your CPU usage, it should be really high like 60% and above if someone is mining on your computer..

Who would even still try and mine bitcoins with others CPU's.

People who have an automated script to go an infect multiple machines.  They don't need to manually control your machine, they can controls herds of machines - BOTNET.

Although botnets could probably make more money doing something other than mining.

How can botnet make money except for participating in cyber crimes like DDOS ? One I heard is participating in CERN's grid computing. Do u know anything else ?

mullerdan
Full Member
***
Offline Offline

Activity: 154
Merit: 100


View Profile
October 26, 2014, 04:00:25 PM
 #24

be careful sometimes its false positive
cp1
Hero Member
*****
Offline Offline

Activity: 616
Merit: 500


Stop using branwallets


View Profile
October 26, 2014, 04:04:27 PM
 #25

use netstat -tulpn to see what process owns it.

Guide to armory offline install on USB key:  https://bitcointalk.org/index.php?topic=241730.0
HeroCat
Hero Member
*****
Offline Offline

Activity: 658
Merit: 500


View Profile
October 26, 2014, 07:00:53 PM
 #26

Save your valuable data on USB, use soft - kill disk, then make new Windows installation, after this check USB files with modern AV + antimalware + second AV soft
elise
Newbie
*
Offline Offline

Activity: 42
Merit: 0


View Profile
October 26, 2014, 07:27:00 PM
 #27

i didnt know miners cant be infected with a trojan..
AllTheBitz
Full Member
***
Offline Offline

Activity: 226
Merit: 100



View Profile
October 26, 2014, 09:44:48 PM
 #28

i didnt know miners cant be infected with a trojan..

Yeah happens all the time if you download stuff.

▓▓▓▓   New Real-time Cryptocurrency Exchange            → CREATE  ACCOUNT ▓▓▓▓
▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅  BIT-X.com  ▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅▅
▓▓▓▓   Supported Currencies: BTC, LTC, USD, EUR, GBP → OFFICIAL THREAD ▓▓▓▓
Kluge
Donator
Legendary
*
Offline Offline

Activity: 1218
Merit: 1015



View Profile
October 28, 2014, 06:47:47 PM
 #29

i didnt know miners cant be infected with a trojan..

Yeah happens all the time if you download stuff.
Just having unprotected VNC server software's enough. Many GPU miners still use VNC for remote interfacing, and some programs actually restrict password length as low as 8 characters. Especially mining on dubious fly-by-night altcoin pools and putting your IP out there as someone who uses crypto, there're a good few risks many don't account for -- like, say you keep a hot wallet backup on a MS Homegroup-shared folder and have your mining PCs in the homegroup with read access to the backup. Someone doesn't need to brute force the PC with a wallet on it, they just need to get into one of the mining PCs and search the network for files.
2double0
Legendary
*
Offline Offline

Activity: 2618
Merit: 1105


View Profile
October 28, 2014, 07:33:09 PM
 #30

I ran a netstat on my machine and found a certain connection with a foreign address...

pool-108-51-140-90:14905

Does anyone know what is this ? Is it a mining pool where I am connected ?

Check your CPU usage, it should be really high like 60% and above if someone is mining on your computer..

Who would even still try and mine bitcoins with others CPU's.

Back in 2012/13 people would spread viruses that mined on their behalf. I heard of someone making a few bits a day from this by infecting work computers. This was when diff was so much lower though.
Pages: « 1 [2]  All
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!