HomeMiningNew Linux Malware 'perfctl' Utilizes 100% CPU for Cryptocurrency Mining, Evades Detection...

New Linux Malware ‘perfctl’ Utilizes 100% CPU for Cryptocurrency Mining, Evades Detection by Pausing Activity Upon Login, Potentially Affecting Millions of Servers

-

Linux Malware ‘perfctl’ Targeting Millions of Servers: A Detailed Analysis

A dangerous Linux malware named ‘perfctl’ has been wreaking havoc on servers for over three years, causing concern among cybersecurity experts. This stealthy malware is designed to use 100% of the CPU to mine the virtual currency ‘Monero’, leading to millions of servers being targeted and thousands being affected.

The existence of perfctl was first reported by security company Aqua, but reports of its activities have been circulating on the internet for several years. Users have complained about a process called perfctl consuming all of their CPU resources, indicating the malware’s presence.

Aqua’s analysis of perfctl revealed that the malware establishes internal and external communication routes upon startup, using UNIX domain sockets and Tor to execute the Monero mining tool ‘XMRig’. The malware also creates various files on the target machine to evade detection and extend its uptime.

To detect perfctl, Aqua recommends monitoring for suspicious files in specific directories, CPU spikes, unexpected processes running, changes to system logs, Tor communications to specific IP addresses, connections to cryptocurrency mining pools, and known malicious IP addresses. Additionally, monitoring for replaced system binaries and analyzing logs for misuse of system binaries, suspicious cron jobs, and falsified error messages can help identify the presence of perfctl.

As the threat of perfctl continues to loom over Linux servers, it is crucial for system administrators to remain vigilant and implement robust security measures to protect their systems from this dangerous malware.

LEAVE A REPLY

Please enter your comment!
Please enter your name here

LATEST POSTS

Ukraine Cyber Crime Bust: 5,000 Accounts Hacked for Crypto Mining

Introduction to Cyber Crime Ukrainian law enforcement has recently made a major arrest within the fight against cyber crime. A 35-year-old man was taken into custody...

Blockchain Alliance: Ripple and Japan's Web3 Salon Spark Asia Innovation

Trusty editorial content, checked by leading industry experts and experienced editors. AD -open Ripple has teamed up with Japan's Web3 salon to support blockchain startups with...

Bitcoin price is approaching 106,000 US dollars in the middle of the revival -but concentrate to this level

Trusty editorial content, checked by leading industry experts and experienced editors. AD -open The Bitcoin Prize continued to impressed over this weekend and has greatly recovered...

Ether crypto finds see 296 million USD tributaries in one of the best week for the reason that trump elections

Ether-based investment products led the tributaries between cryptocurrency base last week, despite a slowdown in investor activity, for the reason that markets await the clarity...

Most Popular

bitcoin
Bitcoin (BTC) $ 109,514.34 3.60%
ethereum
Ethereum (ETH) $ 2,688.79 7.84%
tether
Tether (USDT) $ 1.00 0.01%
xrp
XRP (XRP) $ 2.30 2.59%
bnb
BNB (BNB) $ 663.91 1.93%
solana
Solana (SOL) $ 159.03 5.03%
usd-coin
USDC (USDC) $ 1.00 0.00%
dogecoin
Dogecoin (DOGE) $ 0.192945 5.86%
tron
TRON (TRX) $ 0.286119 0.36%
cardano
Cardano (ADA) $ 0.704804 6.36%