Skip to content

Study: Crypto miners top the list as the most common malware in H1 2021

Study: Crypto miners top the list as the most common malware in H1 2021

Cryptocurrency miners were the most common malware family discovered on devices in the first half of 2021, with 74,490 such threats found in a process dubbed “cryptojacking,” according to research from Atlas VPN.

Cryptojacking is the act of mining cryptocurrency on another person’s computer without their permission. It usually occurs when a victim unwittingly downloads cryptocurrency miner malware via a phishing link, fraudulent website, or software installation, allowing the criminals to access the victim’s device.

Since crypto-mining malware is difficult to detect on victims’ devices, it is a perpetually profitable cyberattack. Furthermore, the anonymity of cryptocurrency makes it easy for malicious hackers to profit from their victims without being detected.

Top 10 most detected malware families (H1 2021). Source: Trend Micro

The statistics are based on Trend Micro’s Attacks from All Angles: 2021 Midyear Cybersecurity Report. In particular, the study looks at hazardous weaknesses in a wide range of devices and operating systems, as well as the attacks aimed at exploiting them.

Malwares sole purpose to mine crypto

Different kinds of crypto miners assist hackers in turning computers into automatons whose sole purpose is to generate more cryptocurrency. 

In the first half of 2021, MalXMR was the most active cryptocurrency miner, with 44,587 detections. MalXMR is a crypto-mining malware that spreads via EternalBlue and takes advantage of Windows Management Instrumentation (WMI). 

With a total of 8,533 detections in H1 2021, Coinminer was the second most often found program. On Android phones, Coinminer is frequently discovered in phony versions of well-known apps from unofficial sources.

Even in Google Play Store apps, some crypto miners were discovered. The infected device may overheat, charge slowly, or exhibit other symptoms of excessive resource processing. 

Victims vulnerable to data breaches and hijackings

A crypto miner named ToolXMR was discovered 6,419 times, a virus that mines Monero coin and is typically sent by other malware via remote locations. It exploits the CPU and GPU resources of the device’s system to mine cryptocurrency, making it function excruciatingly slow.

Ultimately, malware that mines cryptocurrency has made it easier for hackers to benefit from their operations. Due to the increased power costs and poorer device performance, victims of cyberattacks are more vulnerable to data theft, hijackings, and other cyberattacks in the future.

[coinbase]

Best Crypto Exchange for Intermediate Traders and Investors

  • Invest in cryptocurrencies and 3,000+ other assets including stocks and precious metals.

  • 0% commission on stocks - buy in bulk or just a fraction from as little as $10. Other fees apply. For more information, visit etoro.com/trading/fees.

  • Copy top-performing traders in real time, automatically.

  • eToro USA is registered with FINRA for securities trading.

30+ million Users
Securities trading offered by eToro USA Securities, Inc. (“the BD”), member of FINRA and SIPC. Cryptocurrency offered by eToro USA LLC (“the MSB”) (NMLS: 1769299) and is not FDIC or SIPC insured. Investing involves risk, and content is provided for educational purposes only, does not imply a recommendation, and is not a guarantee of future performance. Finbold.com is not an affiliate and may be compensated if you access certain products or services offered by the MSB and/or the BD

Read Next:

Finance Digest

By subscribing you agree with Finbold T&C’s & Privacy Policy

Related posts

Sign Up

or

By submitting my information, I agree to the Privacy Policy and Terms of Service.

Already have an account? Sign In

Services

Disclaimer: The information on this website is for general informational and educational purposes only and does not constitute financial, legal, tax, or investment advice. This site does not make any financial promotions, and all content is strictly informational. By using this site, you agree to our full disclaimer and terms of use. For more information, please read our complete Global Disclaimer.