f038c4273037e698c9c26abf69313830a04b27f4f63b171c1844b79ed3bd936f |
Hash |
Case study #1: Hash of an active cryptominer |
47am2aMvQqCLnRBMqBzXfgfuUMKZhBY3SgY45xV6ikJWXDJ5NLtKq3DPGm1sqiuen1YCE1Ak6nwdg3sx8n6rXpWLF4mFpwq |
Wallet |
Case study #1: Monero wallet address |
4BEUrVUbd8h579R2b87uoGRjyDMTGirQaYazVdnLZuwCN2S8SNDzviCL8YDdsPoCKR5EfHWAYYK5xRU1JprZ2v8MP4siP87 |
Wallet |
Case study #1: Monero wallet address |
42XyygMzMRjd6A2MvPVXMGbZ6PzNe7Sivd8ek3ySHBmg18dDCWRhCZ6RFxVZFFUvoyCDnwA5Y2tSeSCaZAEq4n6q6DD8pQK |
Wallet |
Case study #1: Monero wallet address |
5.133.65.53 |
IP |
Case study #1: Mining proxy IP |
5.133.65.54 |
IP |
Case study #1; Mining proxy IP |
5.133.65.55 |
IP |
Case study #1: Mining proxy IP |
5.133.65.56 |
IP |
Case study #1; Mining proxy IP |
53ea10047275485734e75ca9d1205a51f372b564580e02a1e2062f3b5b3942ce |
Hash |
Case study #2: Largest Zephyr campaign we have found |
ZEPHYR3c6xGj8D5oP4tzKQbPn2dNdse6aPRWxNBiwBFrg7RFN4jf1cqgj5qdR9Wdru44g2FATJHHH38oFDTH6krgKntSzLc5Csy3t |
Wallet |
Case study #2: Zephyr wallet of a large campaign that uses the HashVault pool |
9a3b3a3003b283b5a43130093d5803be52f84c66dd2f4d4125039d396119d917 |
Hash |
Case study #2: Sample hash |
ZEPHYR3CFYFAze5jkYEQMfKdkhvrgSiSchDxqC2ekV8TYaxLdCVffS2d2aeqivDgtRixDe73tj8SjeiUnvxgSrTp65UqiPTRKMo2Z |
Wallet |
Case study #2: Zephyr wallet |
[https://]pastebin.com/raw/4VeXYJAx |
URL |
Case study #2: Sample with controllable configuration using Pastebin service |
ZEPHYR2PtmpFWSbkmyLfoy3wgnPSJdpSpjaH6vKaHh6KQB1FSRwxcgfRGx9qWYHQDNDQy5TFkYBRThm7jfCaQQPGNKe9pyvXG6Z3k |
Wallet |
Case study #2: Zephyr wallet, historical configuration version |
49WbPNohkR8VySDznW2freM7d9uUNiZWajQTE4aeFBUT6gJqye3ZPWbbL9r92r4kzHM7pZaoULavWFK83cSMkEYYDJTV7bT |
Wallet |
Case study #2: Monero wallet of the same sample |
45.77.240.51 |
IP |
Case study #3: Mining proxy |
b64d80bf079266a1bfb0713f8c52db2e9b3a8060491f504e578a6bf05a9c6f46 |
Hash |
Case study #3: The oldest sample we could find for that campaign |
yn.mvip8.ru |
URL |
Case study #4: Stratum proxy that masks the public pool behind it |
49J2yzHRcH8hAWSZajkjT2KztGjAMuTFKh5BxAUGdqomPkhvMmBNc9viDSVymu5V5SAqJrNHf4y9E6rLNArYWtuSJNtVEYv |
Wallet |
Case study #4: Monero wallet used by the sample |