Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

Ethereum (ETH) developers are exploring new token standards as privacy returns to focus

June 10, 2026

The Taxation of Crypto Assets Will Be Discussed in the U.S

June 10, 2026

Garrett Jin bets $11.9mln on Zcash – Can ZEC prove him right?

June 10, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»USB Malware Campaign Spreads Cryptominer Worldwide
USB Malware Campaign Spreads Cryptominer Worldwide
Security and Privacy

USB Malware Campaign Spreads Cryptominer Worldwide

August 18, 2025No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

A multi-stage malware attack delivered via infected USB devices has been identified, raising concerns over the persistence of cryptomining threats in 2025.

Analysts from CyberProof’s Managed Detection and Response (MDR) team discovered that the campaign used DLL search order hijacking and PowerShell to bypass security controls before attempting to install a cryptominer.

The malware was linked to earlier Zephyr (XMRig) activity and was ultimately blocked during the final stage by endpoint detection and response (EDR) tools.

The attack begins with a Visual Basic script concealed on USB drives. Once executed, the script initiates a chain of processes, including xcopy.exe, to move files into the Windows System32 directory. These files then enable the side-loading of a malicious DLL designed to download the cryptominer.

CyberProof noted that the tactics closely resemble an international cryptocurrency mining scheme exposed by Azerbaijan’s CERT in October 2024, known as “Universal Mining.”

The security firm’s research traced the spread of the campaign through multiple intelligence sources and telemetry. Infections have been observed in the US, several European nations, Egypt, India, Kenya, Indonesia, Thailand, Vietnam, Malaysia and Australia.

The wide geographical footprint highlights how removable media continue to be a persistent vector for malware distribution across both developed and developing regions.

Read more on global cybercrime trends: Rethinking Resilience for the Age of AI-Driven Cybercrime 

“The continued prevalence of cryptomining attacks originating from infected USB drives, even in mid-2025, serves as a powerful reminder of a fundamental security challenge,” CyberProof said.

To reduce exposure, the report advises organizations to:

  • Disable autorun and autoplay features on all systems

  • Implement device control policies to block unsigned executables from USBs

  • Harden endpoint security with EDR solutions capable of detecting obfuscated scripts

  • Protect key system processes such as lsass.exe from credential theft attempts

  • Enforce physical security measures, including restricting or locking USB ports

See also  Operation Prowli Malware Infected 40,000 Machines

CyberProof concluded that organizations lacking strict USB policies remain vulnerable not only to cryptominer infections, but also to insider threats that can escalate into more damaging breaches.

Source link

campaign Cryptominer Malware Spreads USB Worldwide
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

New SilabRAT Trojan Hijacks Sessions to Steal Crypto

June 10, 2026

North Korean Hackers Use Fake Coding Tasks to Steal Crypto

June 8, 2026

New DeFi entrant widens field of crypto political campaign funds as elections loom

June 3, 2026

Infosecurity Europe: AI-Powered Cybercrime Tools Surge on Dark Web

June 3, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

How the Crypto Industry Responded to FinCEN’s Proposed Mixer Rule

January 31, 2024

Bitcoin Shakeout Drives $190 Million In Losses For Over 81,000 Traders

December 7, 2023

Expert Explains How Judge Torres Unintentionally Gave XRP Community a Weapon Against Bitcoin Maxis

November 14, 2023

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Ethereum (ETH) developers are exploring new token standards as privacy returns to focus

June 10, 2026

The Taxation of Crypto Assets Will Be Discussed in the U.S

June 10, 2026

Garrett Jin bets $11.9mln on Zcash – Can ZEC prove him right?

June 10, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$61,670.00-0.22%
  • ethereumEthereum(ETH)$1,624.77-1.52%
  • tetherTether(USDT)$1.00-0.02%
  • binancecoinBNB(BNB)$587.77-1.01%
  • usd-coinUSDC(USDC)$1.000.01%
  • rippleXRP(XRP)$1.10-3.30%
  • solanaSolana(SOL)$63.51-2.53%
  • tronTRON(TRX)$0.321313-0.49%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.03-0.62%
  • dogecoinDogecoin(DOGE)$0.083385-1.68%