Beware of sites farming your CPU power thru the web browser

in #teammalaysia6 years ago (edited)


My Dear Friends

Have you ever thought while surfing the internet you suddenly felt your Laptop / Computer 's fan kicks in and started going crazy and heating up and you are not even playing a game ?

YOUR COMPUTER COULD BE MINING ! AND YOU DON'T EVEN KNOW IT !

Unfortunately you would not see a cent of the proceeds however it would all go to the account of the miner who placed the "hack" in the website you visited.

W T F ?

Coinhive offers a JavaScript miner for the Monero Blockchain (Why Monero?) that you can embed in your website. Coin-Hive.Com

When Coin-Hive was launch it was actually for websites to monetize without using too much ads as it becomes a trade-off with using your browsing time to mine for some CRYPTOs

Of course hackers used it as an opportunity to monetize it in the masses so what they did was to hack websites and embed their codes into it or create a magnitude of websites that when each time someone surfs to it , it would start mining.

A number of the commonly used website would be those free "MOVIE STREAMING" or even torrent sites like ThePiratebay has these embedded into their sites .


What are the symptoms

  • Very high CPU and graphics cards usage
  • Web browser is using more than 50% of the CPU power
  • PC tries to connects to Coin-Hive.com/lib/coin-hive.com.min.js
  • Windows minimize and maximize slowly, and programs run slower
  • PC becomes very sluggish and slow and have to be restarted

Which sites are affected ?

There is a list which I am not very sure its updated , however you can check it out at https://github.com/keraf/NoCoin/blob/master/src/blacklist.txt


What can i do to remove it ?

You could use Coin-Hive Blocker which is a Chrome Extention

Another recommended utility would be AdGuard - http://adguard.com


How ELSE can I be infected apart from going to Websites ?

I got to find out that coin-hive is also able to be injected thru "FREE WIFI Networks" . These are unsecured networks where you fill up a form or watch an advert then you get free WiFi ?

Yes those network if they are using simple routers embedded with open source router operating systems such as DDWRT or OPENWRT , its easily manipulated and inject a code to start the coin-hive miner in your machine.

So BEWARE of using Free WiFi / Untrusted WiFI as there could be hackers out there taking away more then just your CPU/GPU power.

Another method is Android APPS where a number of APPs has this build in. So when your phone starts getting heated for no apparent reasons, you may be infected.

Here is a quick video which you may want to watch for more info.


Stay Safe and Have a Great Day

Sort:  

I kena before. My pc never had much sound even when gaming, but damn loud when i visited a site.

Yeah a number of sites has it implemented it. It's crazy. My mac will go crazy when that happens.

These hackers could have just post their content on Steemit and get upvotes instead. Why go through all the trouble? lol

Speaking of which, i really guess it depends on what sites one is using. I am aware that some anti-virus puts a blanket ban on all CoinHive script anyways but what if the user consent to contributing to mine? I guess these blockers can add a feature to enable users to whitelist certain sites and let Coinhive do its thing as long as the user is on the site.

Hackers are hackers. Where is the fun from creating crypto through decent hardworking channel?

It's volume they are after and automated. That makes a lot of sense for them. Don't know what else they can farm besides coins

Thanks for the info @bitrocker2020, didn't know there was such a thing. These hackers are getting more and more clever.

AVG Anti virus will let you know. Even the free version.

Hackers will always find loopholes know the system no matter what.

Yikes! Thanks for the heads up. When you mentioned Google apps, I thought you meant the G Suite kind of Google apps lol... I suppose you mean Android apps or Chrome extensions?

yea .. thanks for correcting me .. i'll change the name

Thanks for the info & Have a great day as well.

Thanks for the info, gonna download that extension today!

Great sharing @bitrocker2020. I had the same issue with some Google Chrome Extension. Nowadays I disable most of it unless it is necessary. Thanks for the AdGuard utility tool.

Thanks for the heads up @bitrocker2020 !😁 Now I know why my pc always go crazy suddenly 😂

Coin Marketplace

STEEM 0.20
TRX 0.15
JST 0.029
BTC 63396.80
ETH 2615.51
USDT 1.00
SBD 2.86