GHOSTMINER

GHOSTMINERGhostMiner

Description

GhostMiner is a new cryptocurrency mining malware. By the end of March 2018, a new variant of mining malware was detected targeting MSSQL, phpMyAdmin, and Oracle WebLogic servers. The sample uses Powershell to execute code with volatile resources and scans the server's processes to detect and stop other miners that might have been running prior to execution. The fileless malware has become more popular in the last years. The malicious code runs directly in main memory without writing any file on disk, where an antivirus engine could detect it.

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

Software
PowerGhost
Software
KingMiner
Software
CoinMiner
Software
GhostHammer
Software
RansomMine
Software
GhostAdmin
Sourced from MITRE ATT&CK Enterprise . Curated by Adam Lundqvist, SQUR.