, ? |
24 2025
, , 2022 , Services.exe, .NET-, VBscript. , , . , ubr.txt, PowerShell, ps1 txt.
ubr.txt , , . SilentCryptoMiner , Monero.
, Zoom (ZoomE.exe ZoomX.exe) Windows (Service32.exe Service64.exe) . . , , , , .
PowerShell- ubr.txt
getcert[.]net, m.txt . .
m.txt,
, .
. , , , , . , .
( : Marek Piwnicki)
, , Amadey, PowerShell- Async.ps1, BMP imghippo.com. : Trojan.PackedNET.2429 , :
Async1.ps
, DNS TXT . BMP :
Cleaner.txt PowerShell-, ,
m.txt PowerShell-, m.bmp IV.bmp. SilentCryptoMiner ,
Net.txt , DNS TXT windowscdn[.]site buyclients[.]xyz. , raw.githack[.]com.
DNS TXT DNS , . , , , .
. GitHub . , , .
, ,
, , 2022 , 340 XMR. , 6 7,5 . , , , . 3,3 , 1 XMR 40 .
, , , . : , .