Home Malware Programs Malware OSAMiner Malware

OSAMiner Malware

Posted: January 13, 2021

OSAMiner Malware is a shady cryptocurrency miner that has been infecting macOS systems since 2015. This threat is meant to use the compromised device's hardware resources to mine for cryptocurrencies like Monero. Often, the OSAMiner Malware's payload is spread via pirated software and games or fake activators for popular office software. Needless to say, the best way to stay away from potentially harmful files is to remember to ignore pirated files found on the Internet, as well as to invest in reliable anti-virus software.

While OSAMiner Malware's mining abilities are not spectacular, its authors are using an innovative method to evade anti-virus software and the controlled environments used by malware analysts. The payload is being executed with a pre-made AppleScript binary. AppleScript is Apple's custom-built scripting language, and it is primarily used to automate various computer tasks. However, the criminals are using a pre-built AppleScript, which cannot be de-obfuscated and read by automated malware detection tools. The run-only AppleScript binaries seen in the OSAMiner Malware campaign are surprisingly simple but very efficient in avoiding analysis. macOS users can stay safe from OSAMiner Malware's attacks by using a reputable security tool.

Loading...