Skip to content

Malware

Verblecon

This malware seems to be used for attacks installing cryptocurrency miners on infected machines.

Verblecon is a Java malware family.

Background

This malware appears to be employed primarily in campaigns that drop cryptocurrency miners onto compromised systems. However, further evidence suggests its operators may put it to additional uses as well, such as harvesting access tokens for the Discord chat application. Symantec characterizes it as sophisticated and capable, noting that it arrives as a server-side polymorphic JAR file.


Source: Malpedia (Fraunhofer FKIE).