Current detection of Bitcoin miners.

Senior Advisor

Current detection of Bitcoin miners.

Up until recently F-secure flagged Bitcoin miners as Riskware;

 

http://community.f-secure.com/t5/Security/F-Secure-treats-cgminer-and/td-p/28988

 

http://community.f-secure.com/t5/Security/F-Secure-blocking-cgminer-after/m-p/42259#M7839

 

And  Application.BitCoinMiner.BU still appears in the threat detections;

 

SnapCrab_NoName_2014-1-19_12-19-15_No-00.png

 

But very recently this detection appears to have been dropped.

 

SnapCrab_NoName_2014-1-19_11-59-15_No-00.png

 

Since these miners can potentially be used to create botnets can I ask why detection appears to be have been dropped while other vendors ( Malwarebytes, MacAfee, Symantec etc) still flag these files as malicious?

1 ACCEPTED SOLUTION

Accepted Solutions
Highlighted
Former F-Secure Employee

Re: Current detection of Bitcoin miners.

Legitimate applications are classified as such.

 

We of course aim to detect possible dropper components used. (In case of malicious activity.)

1 REPLY 1
Highlighted
Former F-Secure Employee

Re: Current detection of Bitcoin miners.

Legitimate applications are classified as such.

 

We of course aim to detect possible dropper components used. (In case of malicious activity.)