Autolt- complied malicious Bitcoin Mining programs
Hi Experts,
We are having trouble from AutoIt-compiled Bitcoin mining programs used to drop malicious code. These codes are encrypted and are capable of bypassing common analysis tools/systems used by security researchers. We come across a large number of such malicious tools on public forums offering free premium accounts to online hosting services. If you happen to run one of these malicious programs under VMware, the malware won’t run and throws up an error message that looks like the one shown below. And this looks genuine. And no one bothers to examine further thinking there is a problem with the firewall settings. Can anyone suggest a method to check out this malware and a method to detect such tools in the future? Thanks in advance.
Connection failed: Can’t retrieve lastest premium accounts. Please check your Internet connection!
Make sure your Firewall doesn’t block DPA – Daily Premium Accounts!








