Close Menu
    X (Twitter)
    Blockchain Journal
    • News
      • Blockchain News
      • Bitcoin News
      • Ethereum News
      • NFT
      • DeFi News
      • Polkadot News
      • Chainlink News
      • Ripple News
      • Cardano News
      • EOS News
      • Litecoin News
      • Monero News
      • Stellar News
      • Tron News
      • Press Releases
      • Opinion
      • Sponsored
    • Price Analisys
    • Learn Crypto
    • Contact
    • bandera
    X (Twitter)
    Blockchain Journal
    Home » Hidden cryptocurrency miners detected on Windows servers MS-SQL and PHPMyAdmin

    Hidden cryptocurrency miners detected on Windows servers MS-SQL and PHPMyAdmin

    0
    By BlockchainJournal on May 30, 2019 News
    Share
    Facebook Twitter LinkedIn Pinterest Email

    The Chinese APT grouping injects cryptocurrency miners and rootkits into MS-SQL and PHPMyAdmin Windows servers around the world. According to specialists from Guardicore Labs , since February 2019, attackers have been able to compromise more than 50,000 servers.

    The malicious campaign was named Nansh0u. The attackers hack Windows MS-SQL and PHPMyAdmin servers using brute-force, and then infect them with malware. Total experts found 20 versions of malicious modules.

    “After successful authorization with administrator rights, attackers downloaded a malicious payload from a remote server, which, through the CVE-2014-4113 vulnerability in the win32k.sys driver, was launched with SYSTEM privileges. After that, the malicious module loaded the TurtleCoin cryptocurrency mining program, ”said Guardicore Labs.

    To prevent the completion of the process, the expired digital certificate of the dummy company Hangzhou Hootian Network Technology, issued by Verisign certification center, was used.

    Specialists from Guardicore Labs note that servers with unreliable credentials are in the first place at risk. To check the system for the presence of malware, experts recommend using a free script .

    Earlier in May, the Firefox browser implemented protection against hidden mining.

    Subscribe to BlockchainJournal news on VK !

    << aside id = "unisender_subscribe_form-10" class = "widget unisender_form">

    BlockchainJournal.news

    BlockchainJournal.news

    Featured Network
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    BlockchainJournal

    Related Posts

    BNB Recovers Key $970 Level and Shows Resilience Amid BNB Token Volatility

    November 12, 20252 Mins Read

    USDC Issuer Circle Beats Forecasts with $740 Million in Q3 2025 Revenue

    November 12, 20252 Mins Read

    Kraken Warns That UK Crypto Regulations Are Punishing Users Rather Than Protecting Them

    November 12, 20252 Mins Read

    Visa enables cross-border payments with USDC stablecoins in new global pilot

    November 12, 20253 Mins Read

    Stablecoin issuers in Japan could fill the bond-buying gap

    November 12, 20252 Mins Read

    Memecoins jump $5B while NFTs see selective recovery led by CryptoPunks

    November 11, 20252 Mins Read

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    © 2025 Blockchain Journal

    Type above and press Enter to search. Press Esc to cancel.

    We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.