Miner Found!

Bitcoin Miner

I’m interested in movies and visit lots of movie sites. Recently I visited a site called YIFYTORRENTS in which I found a bitcoin miner in the site! In this post, I write about how I found the miner and how it acts.

BitCoin Miner 1

BitCoin Miner 1

Visiting the site

I visited YIFY-Torrent.me and suddenly Firefox asked for firewall incoming connection request. The site was good looking. It has valid certificate and uses HTTPS for connection, but why it asked for firewall exception?

Bitcoin Miner 2

Bitcoin Miner 2

So I disallowed the request and continued to investigate the site.

Miner Found

I started to investigate the HTML source code of the site and found a bitcoin miner inside it! The picture below shows the miner code.

Bitcoin Miner 4

Bitcoin Miner 4

Further, I checked the code for the miner. It is in this link and as it is shown, it is obfuscated and started with eval command.

Bitcoin Miner 5

Bitcoin Miner 5

Bitcoin Miner 6

Bitcoin Miner 6

Checking with Addons

I also checked the site with NoCoin addon for Firefox and fortunately it could detect the miner.

Bitcoin Miner 3

Bitcoin Miner 3

Update

I’ve checked the site on 11 Mar 2018 and writing the post on 18 Mar 2018. But luckily COMODO has detected and blocked the site.

Bitcoin Miner 7

Bitcoin Miner 7

Your email address will not be published. Required fields are marked *

*

WP LinkedIn Auto Publish Powered By : XYZScripts.com