Categories: FeaturedNews

Top 3 Types of Bitcoin Mining Malware

Although mining Bitcoin with regular computer hardware is no longer profitable, that isn’t keeping criminals from giving it a try. Over the past few years, there have been several types of Bitcoin mining malware, infecting computers all over the world. Three different types stand out so far, although it is expected more strains of this malware will pop up in 2017 and beyond.

#3 The Otorun Worm

First discovered back in 2011, Otorun is a worm that aims to infect computers all over the world. The malware masked itself as a Windows font file and made use of the LNK vulnerability to infect a computer. One thing that made this malware stand out was how it replicated itself onto removable USB storage. Anyone plugging an infected USB drive into their computer would have to deal with this Bitcoin mining malware as well.

Once a computer is infected with Otorun, the worm exploits the LNK vulnerability to connect to the Deepbit Bitcoin mining pool. All of the available computer hardware – mostly the graphics card – is then taxed to mine Bitcoins. All earnings generated by this process are sent to the criminal’s Bitcoin wallet.  

#2 Kolab

Kolab is another worm that comes with a Bitcoin mining malware payload. This particular malware was distributed through social media, mainly targeted Twitter users in the process. Security researchers discovered Kolab briefly after Otorun, as it shared quite a few similarities.



Related Post

Computers infected with the Kolab worm would see a new directory created, called HKTL_BITCOINMINE. A “grayware’ Bitcoin mining tool issued to generate Bitcoins for the criminals distributing the worm. It remains unclear how much money was made with this malware, but we do know it can still impact computers to this very date.

#1 BTMine

The BTMine vulnerability acts as a backdoor toolkit, which includes its very own Bitcoin mining malware. In most cases, BTMine would be used to execute DDoS attacks and steal Bitcoin wallets from infected computers. In a way, this was a smart dual-pronged approach, as the criminals would steal one’s Bitcoins and force their computer to mine additional funds.

To be more specific, BTMine uses three different types of Bitcoin mining software, depending on the infected system’s specifications. Those variations made BTMine one of the most powerful Bitcoin-related threats to computer users all over the world. Users who do not perform regular operating system updates remain vulnerable to this backdoor threat, even though several security patches have been issued in recent years.

If you liked this article, follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin, cryptocurrency, and technology news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Tokenized RWA On The XRP Ledger Surpasses $1 Billion For The First Time

The XRP Ledger (XRPL) has reached a major milestone in the global push toward real-world…

2 days ago

Nifty Gateway Announces Platform Shutdown In February 2026

Nifty Gateway, one of the earliest and most influential NFT platforms, has announced that it…

3 days ago

WOOFi Executes $8.9 Million Token Burn After Unanimous Governance Vote

WOOFi has executed one of the most decisive supply-side actions in its history, permanently removing…

3 days ago

Grayscale Files For Spot BNB ETF With The SEC

Grayscale is pushing deeper into the post-Bitcoin ETF era. On January 23, 2026, the asset…

4 days ago

Solana Unveils Its Most Aggressive Upgrade Cycle Ahead Of 2026

Solana is preparing for what could be the most aggressive and transformative upgrade cycle in…

4 days ago

BitGo Becomes First Crypto Company To Go Public In 2026

Crypto custody firm BitGo Holdings has officially opened the public markets’ door for digital asset…

5 days ago