Skip to main content
Skip to main content
Microsoft Security Intelligence
66 entries found. Displaying page 4 of 4.
Updated on Feb 19, 2018

Microsoft Defender Antivirus detects and removes this threat.

This threat represents a cryptocurrency mining payload associated with post exploitation of the remote code execution vulnerability, CVE-2021-44228 (also referred to as “Log4Shell”), in the Log4j component of Apache. This vulnerability affects Java-based applications that use Log4j 2.

Attackers gain access to the target device and launch arbitrary remote code loaded from LDAP servers, which are logged and launched by the Log4j component. This can allow attackers to install cryptocurrency miners on a target device. 

Read the following blogs for more information:

 

Alert level: severe
Updated on Sep 14, 2018
Alert level: severe
Updated on Feb 10, 2018
Alert level: severe
Updated on Sep 20, 2017

Microsoft Defender Antivirus detects and removes this threat. 

This threat downloads and installs other programs, including other malware, onto your PC without your consent. 

Learn more about this type of threat: Invisible resource thieves: The increasing threat of cryptocurrency miners

Alert level: severe
Updated on Feb 13, 2018
Alert level: severe
Updated on Feb 13, 2018
Alert level: severe