Live data from Hacker News

New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

thenextweb.com

11–20 of 51 posts

Re: New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

#11

Malware Bitcoin-miners, hmm? I don't like Skype as a vector... what if you could put it in the browser instead? Which leads me to a less malware-y idea: write a JavaScript/Flash/similar component that mines bitcoins in a web browser. Put it on your site instead of ads. Has anyone beat me to it?

Has anyone beat me to it?

Where BitCoin is concerned, the answer is always "yes".

Re: New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

#12

Malware Bitcoin-miners, hmm? I don't like Skype as a vector... what if you could put it in the browser instead? Which leads me to a less malware-y idea: write a JavaScript/Flash/similar component that mines bitcoins in a web browser. Put it on your site instead of ads. Has anyone beat me to it?

That idea came, and went, two years back.

https://bitcointalk.org/index.php?topic=9042.0

Re: New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

#13

Malware Bitcoin-miners, hmm? I don't like Skype as a vector... what if you could put it in the browser instead? Which leads me to a less malware-y idea: write a JavaScript/Flash/similar component that mines bitcoins in a web browser. Put it on your site instead of ads. Has anyone beat me to it?

https://news.ycombinator.com/item?id=2566365

Re: New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

#15
post #8
post #7

Earlier quoted context omitted.

Mining bitcoin on a CPU these days is like digging for gold with a garden shovel. Once upon a time it may have worked, but today it's basically useless (even if you do it on a million computers at once).

WebGL FTW! :)

Wouldn't work. The right API calls aren't exposed. You would need something like webCL.

Re: New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

#16
post #10
post #6

Earlier quoted context omitted.

There will always be ways to monetize malware. I'd rather they monetize it by mining Bitcoins than by doing something more destructive.

honeypot anyone... create the appears of a hacked machine that is successfully mining... keep'em busy for a few weeks ...

It's surely automated, in which case, there's nothing to "keep busy" like a human manually hacking into the average lousy computer one by one.

Re: New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

#17
post #15
post #8

Earlier quoted context omitted.

WebGL FTW! :)

Wouldn't work. The right API calls aren't exposed. You would need something like webCL.

A long time ago I did some proof of concept work to do GPGPU operations in the browser with regular webGL, it kind of worked: http://learningwebgl.com/blog/?p=1828#comments

I did look into using the same technique to implement bitcoin mining in glsl. My opinion is that it is possible, but not straight forward and probably not worth it, but still a pretty f'ing cool concept.

Re: New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

#18

Malware Bitcoin-miners, hmm? I don't like Skype as a vector... what if you could put it in the browser instead? Which leads me to a less malware-y idea: write a JavaScript/Flash/similar component that mines bitcoins in a web browser. Put it on your site instead of ads. Has anyone beat me to it?

Too late xD

http://www.bitcoinplus.com/miner/embeddable

Re: New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

#19

A new market for malware opens. This is even better than spam.

Actually it is better, isn't it. If malware starts working to keep the bitcoin transaction network operational as opposed to spamming or stealing webbanking keys ... then it's actually doing something that's either neutral or useful. Useful if you like bitcoin.

That'd be a great step forward. I doubt it's worth the effort though.

Re: New Skype malware spreading at 2,000 clicks per hour to mine Bitcoins

#20
post #4

Re the conclusion: to protect yourself, don't run an OS that will silently install software just because you clicked on a blue link in a program published by the OS vendor. Steve Ballmer should be jailed as an accessory for allowing this.

With a malware name like "Trojan.Win32.Jorik.IRCbot.xkt" - implying a Windows vector - I can't see why someone would downvote you for that comment.

I've got Skype on my *nix box, so do the downvoters assume that my system is also vulnerable to this malware?

Post reply on HN