Discovering botnets digging huge encrypted money earns $ 8,500 a day for hackers
A giant cryptocurrency botnet called Smominru, which has taken control of more than half a million computers worldwide, has been discovered by security researchers. This botnet spreads the EternalBlue lane, the NSA's WannaCry exploit method developed but accidentally revealed it.
Smominru turned the infected computer into a Monero pre-coding digger. The hijacking of computer networks by hackers to other pre-coding cascades has happened before but Smominru stands out by its size. Smominru is twice as big as the botnet of pre-coding Adylkuzz.
Researchers at Proofpoint said that Smominru botnets can be created by 526,000 nodes at the peak of the time. It is estimated that Smominru botnet can bring about $ 8,500 per day to its owner. And since this botnet was launched in May 2017, it has exploited 8,900 Monero, worth about $ 2.8 to $ 3.6 million to its owners.
Most of the buttons in Smominru botnet are Windows servers, machines with processing power and continuous operability. Most organizations do not know their servers are becoming a node in the Smominru botnet.
According to security experts, hackers use at least 25 servers to detect Windows computers that can be attacked by EternalBlue. In addition, to increase the number of nodes for botnets, they also use the EsteemAudit exploit method for the RDP vulnerability on Windows Server 2003 and Windows XP.
This is a highly flexible botnet that can be self-repaired, although at a time when functional units knocked out a third of the Smominru botnet, it quickly recreated itself, even in the future. It also developed into a larger network than the current half million.
The majority of infected systems are located in Russia, India and Taiwan.
Currently, the most popular crypto currency is still bitcoin, but digital miners are slowly turning to alternatives such as Monero, a highly private currency and the ability to quickly exchange cash.
See more:
- Digital pre-digging tool infects Windows computers via EternalBlue and WMI
- Eternal Blues - NSA's EternalBlue vulnerability testing tool
- The Chrome gadget secretly exploits virtual money, making it slow
You should read it
- Detecting cryptocurrency mining Botnet using photos of Taylor Swift to spread malicious code
- How to get your kids excited about coding
- How to Develop an Interest in Coding
- How to Prepare for a Coding Interview
- What is VVC (Versatile Video Coding)?
- What To Remember When You Start Coding
- Journey of encryption technology
- The Adobe Flash update may contain malware that digs encrypted money
- Can Threadripper CPU dig up 'peer' pre-coding with VGA GTX 1080?
- The Wonders of Learning How To Program And Its Benefits To Your Business
- Eternal Blues - NSA's EternalBlue vulnerability testing tool
- 13 tips to help you learn code super fast without being too expensive
Maybe you are interested
Microsoft dismantled the ZLoader botnet, naming key members as a deterrent
Notorious botnet TrickBot stopped working, redirected to another form of malicious code that could be more dangerous
Detecting botnets that can easily bypass Windows Defender and steal crypto wallet data
The Gupteba botnet that infected 1 million Windows computers has just been taken down by Google
Botnets can change CPU settings to increase mining performance
Microsoft has just taken down the world's largest botnet