Close Menu
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
What's Hot

CoinDesk 20 performance update: Bittensor (TAO) drops 4%, leading index lower

May 29, 2026

Trezor stablecoin yield is live in Trezor Suite for USDC and USDT

May 29, 2026

OT Group Ltd Announces Strategic Focus on Digital Infrastructure Investments

May 29, 2026
Facebook X (Twitter) Instagram
Recession Profit AlertsRecession Profit Alerts
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
Recession Profit AlertsRecession Profit Alerts
Home»Security»Microsoft Warns of Sneaky Crypto Miner Threat Targeting High-End PC Users
Security

Microsoft Warns of Sneaky Crypto Miner Threat Targeting High-End PC Users

May 29, 2026No Comments2 Mins Read

Microsoft Threat Intelligence has found out about a sophisticated cryptojacking campaign that combines web exploitation and extremely sophisticated social engineering.

This campaign deliberately targets hardware enthusiasts and PC gamers to hijack their high-performance GPU resources in order to illegally mine cryptocurrencies.

Microsoft Defender Experts observed that threat actors are now poisoning AI chatbot results to trick unsuspecting users into downloading malware.

The AI and SEO attack chain

Cryptojacking campaigns tend to prioritize infection volume over precision.

However, this newly discovered campaign has been specifically designed to get as much yield per device as possible.

Attackers lure targets using Search Engine Optimization (SEO) poisoning as well as malicious links embedded in responses generated by Large Language Model (LLM) chatbots.

card

Users who want to download some legitimate software are directed to lookalike domains.

Malicious sites masquerade as popular hardware monitoring and system utilities.

Compromised download packages include CrystalDiskInfo, HWMonitor, FurMark, and so on.

Advanced evasion

After downloading the targeted software, they receive a ZIP archive with a malicious file.

The system quietly launches the malware via DLL sideloading.

From there, the malware deploys ScreenConnect, which is a legitimate commercial remote management tool. This makes it possible for nefarious actors to gain persistent access to the machine.

The threat actors execute a technique known as process hollowing.

A custom .NET payload called ⁠ launches a trusted, Microsoft-signed Windows utility and injects its mining code directly into the trusted utility’s memory space.

The loader then downloads GPU-focused mining clients of the likes of gminer.

The malware constantly monitors the host system to remain undetected:

See also  Ghana Formalizes Crypto Sector With Structured Licensing Pathway

It monitors active GPU usage and user idle time. The miner automatically terminates its activity so the victim doesn’t notice a sudden drop in PC performance.

The software repeatedly manipulates Windows PowerShell to add exclusion paths to antivirus settings.

Microsoft confirmed that Microsoft Defender Antivirus and Microsoft Defender for Endpoint detect and block threats tied to this campaign.

Source link

Crypto HighEnd Microsoft miner Sneaky Targeting Threat users Warns

Related Posts

Resolv Foundation Outlines Recovery Plan Following $25M Protocol Exploit

May 29, 2026

FBI Pulls $40M in Gold Bars From CIA Official’s Fairfax County Home in Theft Case

May 29, 2026

NATO Warns Russia’s Hybrid War Is Targeting Europe’s Energy Grid

May 29, 2026

THORChain approves ADR028 as RUNE holders await network restart

May 29, 2026
Top Posts

Staking Brings Decentralization Back to DeFi

September 26, 2023

A simple explainer on what quantum computing actually is, and why it is terrifying for bitcoin

April 5, 2026

Education Is Key To Tackling Increasing Trend of Crypto Hacks

October 31, 2023

Type above and press Enter to search. Press Esc to cancel.