SHA1:
- eacdce454daafa6b85ad645c9739542a658f27d7
- ec97d73c2ccd566829af1b7b36073d787bf48c4b
- 1ba57155927231559db74d984221106bb10007a5
A loader Trojan used to download miners on servers that run on Microsoft Windows Server using a vulnerability in Cleverence Mobile SMARTS Server.
It receives an argument "0", "1" or “2”. Depending on the argument, it respectively downloads a tool Process Hacker, a miner XMRig or a driver of the tool Process Hacker. The Trojan has an unused code to download XMRig-Proxy.
News about the Trojan |