A forum for reverse engineering, OS internals and malware analysis 

Forum for analysis and discussion about malware.
 #29436  by EP_X0FF
 Mon Oct 17, 2016 7:58 am
Bogdan-Mihai wrote:Miner 0day: hxxp://www.france4real.com/rds/Factura_PDF.exe

When the machine is idle it spawns a new process x64SSE2.exe.
Payloads attached.
Bitconin miners itself not really malware even if they abused by malware.