Threat Database Backdoors BKDR_BTMINE.MNR

BKDR_BTMINE.MNR

By GoldSparrow in Backdoors

Threat Scorecard

Ranking: 8,320
Threat Level: 80 % (High)
Infected Computers: 54
First Seen: September 26, 2011
Last Seen: September 9, 2023
OS(es) Affected: Windows

BKDR_BTMINE.MNR is a backdoor Trojan that turns an affected computer system into an involuntary Bitcoin miner. BKDR_BTMINE.MNR installs the mining software onto infected PC systems. BKDR_BTMINE.MNR uses the PC system's resources to solve Bitcoin blocks for creating more Bitcoins. A Bitcoin "block" is a complex cryptographic problem. BKDR_BTMINE.MNR installs three different mining software and runs whatever the computer system's processing speed can enable. To help speed up the processing, BKDR_BTMINE.MNR downloads necessary drivers for the GPU and CPU of the infected computer system. If blocks are solved, attackers obtain ownership of the created Bitcoins. Get rid of BKDR_BTMINE.MNR as early as possible.

File System Details

BKDR_BTMINE.MNR may create the following file(s):
# File Name Detections
1. %Windows%\{number}_myunrar2.exe
2. %Windows%\rpcminer.rar
3. %Windows%\phoenix.rar
4. BKDR_BTMINE.DDOS
5. %Windows%\ufa.rar

Registry Details

BKDR_BTMINE.MNR may create the following registry entry or registry entries:
HKEY_LOCAL_MACHINE\SOFTWARE\btcclient
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\srvbtcclient

Trending

Most Viewed

Loading...