Jump to content
An upgrade will take place on June 18, 2024 during the midday hours (UTC). The Forum will not be accessible for a short period of time. ×

Digmine and Win64/CoinMiner.


Recommended Posts

Hello there,

There are news spread about a malware that is using facebook messenger as a vector to infect victims with Digmine, here you have some links as reference: 


I checked the ESET Database latest definition Update 16617 and there's a Win64/CoinMiner listed there, I just would like to know if this update covers this new malware detection.

Thanks in advance.

Link to comment
Share on other sites

  • Administrators

It should be Win32/TrojanDownloader.Autoit.OJA trojan.

I wouldn't worry about CoinMiners or malware being sent via FB messages since the user must explicitly click the file to open/run it. More worrying is malware or CoinMiners that are run through malwaretising. For instance, yesterday we encountered a brand new variant (detected by ESET's javascript scanner) that was loaded by certain pages on the website of the Slovak Railways. Although it was a link to a legitimate ad server, in fact the ad contained a redirect to a server with the coin mining script. The same script has been seen to be loaded also on a lot porn sites.

Link to comment
Share on other sites

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Create New...