Bitcoin Forum
April 27, 2024, 04:56:32 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: How ironic, a Bitcoin miner infected by a Bitcoin miner.  (Read 1709 times)
Remember remember the 5th of November (OP)
Legendary
*
Offline Offline

Activity: 1862
Merit: 1011

Reverse engineer from time to time


View Profile
September 27, 2012, 03:50:34 PM
 #1

Just an hour ago I started noticing my second PC losing internet access(PC 1 was the one infected) for some reason, I am using ICS on a brand new computer, which I purchased just yesterday for home use(no mining). This means my HDD was formatted clean.

And today, I notice it was infected by a bitcoin miner considering the fact I visited no Bitcoin related websites AT ALL!!. The only things I did download was a bunch of software(yeah, pirate software).

The process was disguised as svcchost.exe running under your account, not System. Too bad I failed to realize I needed to disassemble and find the account and ban the guy.

BTC:1AiCRMxgf1ptVQwx6hDuKMu4f7F27QmJC2
1714236992
Hero Member
*
Offline Offline

Posts: 1714236992

View Profile Personal Message (Offline)

Ignore
1714236992
Reply with quote  #2

1714236992
Report to moderator
1714236992
Hero Member
*
Offline Offline

Posts: 1714236992

View Profile Personal Message (Offline)

Ignore
1714236992
Reply with quote  #2

1714236992
Report to moderator
1714236992
Hero Member
*
Offline Offline

Posts: 1714236992

View Profile Personal Message (Offline)

Ignore
1714236992
Reply with quote  #2

1714236992
Report to moderator
Every time a block is mined, a certain amount of BTC (called the subsidy) is created out of thin air and given to the miner. The subsidy halves every four years and will reach 0 in about 130 years.
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714236992
Hero Member
*
Offline Offline

Posts: 1714236992

View Profile Personal Message (Offline)

Ignore
1714236992
Reply with quote  #2

1714236992
Report to moderator
1714236992
Hero Member
*
Offline Offline

Posts: 1714236992

View Profile Personal Message (Offline)

Ignore
1714236992
Reply with quote  #2

1714236992
Report to moderator
RB26DETT
Member
**
Offline Offline

Activity: 65
Merit: 10


View Profile
September 27, 2012, 03:52:23 PM
 #2

Learn to use a computer?
RodeoX
Legendary
*
Offline Offline

Activity: 3066
Merit: 1145


The revolution will be monetized!


View Profile
September 27, 2012, 03:53:39 PM
 #3

Learn to use a computer?
It could happen to anyone.

The gospel according to Satoshi - https://bitcoin.org/bitcoin.pdf
Free bitcoin in ? - Stay tuned for this years Bitcoin hunt!
kiba
Legendary
*
Offline Offline

Activity: 980
Merit: 1014


View Profile
September 27, 2012, 03:54:14 PM
 #4

Don't pirate software?  Wink

Remember remember the 5th of November (OP)
Legendary
*
Offline Offline

Activity: 1862
Merit: 1011

Reverse engineer from time to time


View Profile
September 27, 2012, 03:54:50 PM
 #5

Learn to use a computer?
I've been using computers for a while now, and I consider myself above a Power user, at least. But I could not have predicted this could happen to me a day after I bought a brand new computer.

BTC:1AiCRMxgf1ptVQwx6hDuKMu4f7F27QmJC2
jcpham
Full Member
***
Offline Offline

Activity: 165
Merit: 100


Your Argument is Irrelephant


View Profile
September 27, 2012, 03:56:12 PM
 #6

Don't pirate software?  Wink

100x this.
Remember remember the 5th of November (OP)
Legendary
*
Offline Offline

Activity: 1862
Merit: 1011

Reverse engineer from time to time


View Profile
September 27, 2012, 03:57:08 PM
 #7

Don't pirate software?  Wink

100x this.
Don't misunderstand, I am all for buying legit software the legit way, however, money is required for this. Money which I don't have to spend.

BTC:1AiCRMxgf1ptVQwx6hDuKMu4f7F27QmJC2
markm
Legendary
*
Offline Offline

Activity: 2940
Merit: 1090



View Profile WWW
September 27, 2012, 03:58:07 PM
 #8

Maybe predicting how soon after getting the new computer you would go putting pirate stuff on it might have helped improve the predictability?

As it seems more likely related to the piracy than to the purchase of the computer?

-MarkM-

Browser-launched Crossfire client now online (select CrossCiv server for Galactic  Milieu)
Free website hosting with PHP, MySQL etc: http://hosting.knotwork.com/
Remember remember the 5th of November (OP)
Legendary
*
Offline Offline

Activity: 1862
Merit: 1011

Reverse engineer from time to time


View Profile
September 27, 2012, 03:59:34 PM
 #9

Maybe predicting how soon after getting the new computer you would go putting pirate stuff on it might have helped improve the predictability?

As it seems more likely related to the piracy than to the purchase of the computer?

-MarkM-

Let's just say I thought that it was a 1 in 50 thousand chance I get infected by a miner.

BTC:1AiCRMxgf1ptVQwx6hDuKMu4f7F27QmJC2
stevegee58
Legendary
*
Offline Offline

Activity: 916
Merit: 1003



View Profile
September 27, 2012, 04:02:03 PM
 #10

Quote
It could happen to anyone.

No.  It couldn't.  You have to take action to get infected, unless a secret agent broke in and infected it while you were out.

OP is an idiot.

You are in a maze of twisty little passages, all alike.
caffeinewriter
Hero Member
*****
Offline Offline

Activity: 532
Merit: 500



View Profile
September 27, 2012, 04:15:18 PM
 #11

Quote
It could happen to anyone.

No.  It couldn't.  You have to take action to get infected, unless a secret agent broke in and infected it while you were out.

OP is an idiot.

I'm just going to throw this out there. Hackers get viruses, so do government workers, so do regular people, and I'm sure even HAL-9000 would get a virus every  now and again. You know, before he systematically annihilated it through his advanced AI powered antivirus software.

thepwnorbpwnd
Sr. Member
****
Offline Offline

Activity: 462
Merit: 250



View Profile
September 27, 2012, 04:16:02 PM
 #12

This wasn't caused by the miner, it was because of all the pirated software you got on the new computer.  Roll Eyes
Remember remember the 5th of November (OP)
Legendary
*
Offline Offline

Activity: 1862
Merit: 1011

Reverse engineer from time to time


View Profile
September 27, 2012, 04:32:57 PM
Last edit: September 27, 2012, 04:54:13 PM by Remember remember the 5th of November
 #13

Actually, that may not be the case. I own a legal(purchased) copy of Minecraft since Alpha days. Upon installing it today I noticed it had no sound(installed from official servers obviously).
I went on to search for a fix and noticed this blog post http://www.tobys.dk/blog/minecraft-no-sound-fix/

It links to OpenAL(no idea if from the official website). Upon scanning my computer it showed the OpenAL folder(and many other in the Windows folder) as containing the virus. I've posted a comment on the blog mentioning this (in all caps).

Log: http://pastebin.com/D56q6NWL

BTC:1AiCRMxgf1ptVQwx6hDuKMu4f7F27QmJC2
greyhawk
Hero Member
*****
Offline Offline

Activity: 938
Merit: 1009


View Profile
September 27, 2012, 05:44:26 PM
 #14

Don't pirate software?  Wink

100x this.
Don't misunderstand, I am all for buying legit software the legit way, however, money is required for this. Money which I don't have to spend.

Not at all: http://www.osalt.com/
Uuno
Member
**
Offline Offline

Activity: 96
Merit: 10



View Profile
September 27, 2012, 06:23:38 PM
 #15

Well, I'm not saying you got it from pirated software but it's very possible. It is known that many people who upload (or re-upload) those pirated softwares, will put something extra in there, viruses for example.

Send all your money here: 1CRTegc4fdeJYwTPGYTuGq3nFBbgvHc23c
FirstAscent
Hero Member
*****
Offline Offline

Activity: 812
Merit: 1000


View Profile
September 27, 2012, 06:48:17 PM
 #16

Don't pirate software?  Wink

Sorry for the off-topic question, but I'd like an answer.

I am curious. Do those who don't believe in pirating software believe in pirating movies? This question only really applies to those who believe pirating software is not good because they believe the developers deserve compensation as opposed to those who believe pirating software is not good because it compromises security.
BCMan
Hero Member
*****
Offline Offline

Activity: 535
Merit: 500



View Profile
September 27, 2012, 06:50:31 PM
 #17

Just an hour ago I started noticing my second PC losing internet access(PC 1 was the one infected) for some reason, I am using ICS on a brand new computer, which I purchased just yesterday for home use(no mining). This means my HDD was formatted clean.

And today, I notice it was infected by a bitcoin miner considering the fact I visited no Bitcoin related websites AT ALL!!. The only things I did download was a bunch of software(yeah, pirate software).

The process was disguised as svcchost.exe running under your account, not System. Too bad I failed to realize I needed to disassemble and find the account and ban the guy.
You haven't checked warez with antivirus before running it? This is a rule number one.
Jutarul
Donator
Legendary
*
Offline Offline

Activity: 994
Merit: 1000



View Profile
September 27, 2012, 06:57:45 PM
 #18

Just an hour ago I started noticing my second PC losing internet access(PC 1 was the one infected) for some reason, I am using ICS on a brand new computer, which I purchased just yesterday for home use(no mining). This means my HDD was formatted clean.

And today, I notice it was infected by a bitcoin miner considering the fact I visited no Bitcoin related websites AT ALL!!. The only things I did download was a bunch of software(yeah, pirate software).

The process was disguised as svcchost.exe running under your account, not System. Too bad I failed to realize I needed to disassemble and find the account and ban the guy.
You haven't checked warez with antivirus before running it? This is a rule number one.
+1. First step before any secondary installs is to activate security measures. In the windows world anyway. Second rule, if you don't trust a software, don't run it as your user - use a separate account without privileges. Simple, yet effective. If you're paranoid use a virtual machine for unsafe stuff.

The ASICMINER Project https://bitcointalk.org/index.php?topic=99497.0
"The way you solve things is by making it politically profitable for the wrong people to do the right thing.", Milton Friedman
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!