March 31, 2026

Capitalizations Index – B ∞/21M

Crypto Mining Malware Has Netted Nearly 5% of all Monero, Says Research

Crypto mining malware has netted nearly 5% of all monero, says research

Crypto Mining Malware Has Netted Nearly 5% of all Monero, Says Research

Monero (XMR) is by far the most popular cryptocurrency among criminals deploying mining malware, according to a new study.

Two researchers, Sergio Pastrana and Guillermo Suarez-Tangil, from Universidad Carlos III de Madrid and King’s College London, respectively, published their report last week, estimating that hackers have mined at least 4.32 percent of the total monero in circulation.

Pastrana and Suarez-Tangil write:

“Overall, we estimate there are at least 2,218 active campaigns that have accumulated about 720K XMR (57M USD). Interestingly just a single campaign (C#623) has mined more than 163K XMR (18M USD), which accounts for about 23% of the total estimated. This campaign is still active at the time of writing.”

The researchers, however, are not sure whether, or what portion, of malware owners have cashed out their crypto, due to lack of information and the fluctuating prices of cryptos. At press time, the value of the XMR total cited is almost $40 million.

Around 4.4 million malware samples were analyzed over a 12-year period from 2007 to 2018, and and 1 million malicious miners were identified, the paper says.

Tactics adopted to distribute malware varies, but the pair say that a “common yet effective approach is to use legitimate infrastructure such as Dropbox or GitHub to host the droppers, and stock mining tools such as claymore and xmrig to do the actual mining.”

After monero, which the pair said is “most prevalent,” bitcoin [BTC] came in at second favorite crypto for illicit mining, though its popularity has decreased over the years. Bad actors also experimented with other altcoins such as dogecoin or litecoin during 2013 and 2014 and then shifted back to bitcoin [BTC] and monero, probably because these are more profitable, the researchers suggest.

Of the malware-associated wallets identified by the team, monero was 56 percent more represented than bitcoin [BTC], while zcash came in third place.

Crypto mining malware has netted nearly 5% of all monero, says research

More generally, instances of crypto-mining malware increased by well over 4,000 percent last year, according to research from McAfee published in December – growth that saw it rapidly overtake the previous favorite, ransomware, over the period.

Back in November, research from Israel-based cybersecurity firm Check Point Software Technologies showed that a monero mining malware, dubbed KingMiner, is evolving through time to avoid detection.

Monero image via Shutterstock; tables via the report 

Published at Thu, 10 Jan 2019 05:00:36 +0000

Previous Article

Blockchain and Ethereum Security on the Higher Level – Vitalik Buterin

Next Article

Beirut Blockchain developer (hyperledger + ethereum) for business training | hyper ledger, erc20, smart contract (private+public) bitcoin [BTC] bitcoin [BTC] cryptocurrency token, coin development, solution architect, bitcoin [BTC] development tr

You might be interested in …

FAST ID | 如何使用FAST ID注册和登录 – FastECO –

FAST ID | 如何使用FAST ID注册和登录 – FastECO – FastECOBlockedUnblocktoken=”true” data-redirect=”https://medium.com/_/subscribe/user/844503cdfdba” data-action-source=”post_header_lockup-844503cdfdba————————-follow_byline”>FollowFollowing Apr 18 我们的目标是降低用户访问我们平台(FASTECO)的门槛。 对于之前不了解区块链的人来说,这尤其必要。 为此,我们设计了FAST ID系统。 FAST ID 只需要一个电话号码即可注册,一旦注册完成,登录很简单。 这是我们推出的第一个FAST ID版本,未来的升级版本将使登录方式更容易,也更稳定。 STEP 1 | 如何注册: 要使用FAST ID,您必须先填写注册表单以注册FAST ID。 创建一个长度在4到20个字符之间的昵称(用户名)。 创建一个可靠的密码,再次输入密码进行确认。 选择国家/地区代码。 然后输入您的电话号码并选择SEND以从FASTECO接收手机短信验证码。 输入4位验证码。 选择SIGN […]

Google removes metamask from chrome extension store

Google Removes MetaMask from Chrome Extension Store

Google Removes MetaMask from Chrome Extension Store Advertisement Google has abruptly removed MetaMask from the Chrome Extension store without any explanation. The Dapp browser extension has been unceremoniously removed from the Android and Chrome marketplace […]

The storm! [ds] panic. Red pill marathon.

The STORM! [DS] Panic. Red Pill Marathon.

The STORM! [DS] Panic. Red Pill Marathon. Potus Lays Down a Path of Destruction. Our Website http://www.BPEarthWatch.Com Back Up https://www.real.video/channel/bpearthwatch Patreon Channel http://www.patreon.com/BPEarthWatch PrePare With BP. https://preparewith.com/bpearthwatch AlexaPure Water Filters http://www.BPEarthWatch.Com Survival Food and Supplies […]