Security researchers have discovered a fake Adobe Flash update which installs cryptocurrency miner on your system
Security researchers have discovered a fake Adobe Flash update which installs cryptocurrency miner on your system.The fake Adobe Flash update downloads and install XMRig cryptocurrency miner on your windows system. This malware also updates your Flash player to the latest version.Security researchers at Palo Alto Networks spotted the fake Adobe Flash update.“As early as August 2018, some samples impersonating Flash updates have borrowed pop-up notifications from the official Adobe installer. These fake Flash updates install unwanted programs like an XMRig cryptocurrency miner, but this malware can also update a victim’s Flash Player to the latest version.”While searching Researchers spotted a fake Adobe Flash updates starting with file names AdobeFlashPlayer__ hosted on a cloud-based web server which doesn’t belong to the Adobe.The download always contains a string flashplayer_down.php?clickid= in the URL. 113 fake adobe flash update installing cryptocurrency miner was spotted in the last few months said researcher.“Near the beginning of the traffic, my infected Windows host generated an HTTP POST request to osdsoft[.]com. This domain is associated with updaters or installers pushing cryptocurrency miners and other unwanted software.““One such example from December 2017 named free-mod-menu-download-ps3.exe also shows osdsoft[.]com followed by XMRig traffic on TCP port 14444 like the example used in this blog. However, other malware samples reveal osdsoft[.]com is associated with other unwanted programs usually classified as malware.” said in the post published by researchers at Palo Alto Networks.When you click the file, a warning will be shown by the windows once you click ok it will start the installation.Once the cryptocurrency miner is installed on the device and the malware updates the flash player to the latest version because of this victim may not anything suspicious. For the latest cyber threats and the latest hacking news please follow us on Facebook, Linkedin and Twitter.
You may be interested in reading:Google Shutdowns Google+ After Bug Exposed User Data of 500,000 Users