Red Security
News Cryptojacking Apps are Found on Microsoft Store - Printable Version

+- Red Security (https://redsecurity.info/cc)
+-- Forum: General (https://redsecurity.info/cc/forumdisplay.php?fid=1)
+--- Forum: News (https://redsecurity.info/cc/forumdisplay.php?fid=4)
+--- Thread: News Cryptojacking Apps are Found on Microsoft Store (/showthread.php?tid=947)



Cryptojacking Apps are Found on Microsoft Store - Mad-Architect - 02-17-2019

[Image: microsoft.gif]


            A series of eight crypto-jacking apps have been found in the Microsoft Store; these types of malware are designed to utilize the CPU cycle to mine Monero. Symantec had detected these malicious apps disguised as optimization and web browsing apps. 

     Symantec stated that the apps appear have been published some time last year, and the number of those infected by them is still unknown. 

     Once the app is downloaded and launched, it leverages the XMR coinhive scripts through the Google Tag Manager, right from the attacker's domain servers. The coinhive-script appears to have been loaded this remote location. http://statdynamic[.]com/lib/crypta.js.

     
        Based on gathered information, all of the aforementioned apps seems to have been published the same developers, DigiDream, 1clean, and Findoo. Since the posting of this article, all of the apps have been taken down. 

       Original article can be found here.


       That was the news folks, have a good weekend, and stay safe out there. 



       ----Mad-Architect