Trojan.ElectrumDoSMiner is Malwarebytes’ detection name for a Trojan responsible for distributed denial of service (DDoS) attacks against Electrum bitcoin wallets.
Users of affected computers may experience slowdowns in internet speed as they are joined to a botnet that performs DDoS attacks.
Trojan.ElectrumDoSMiner can be dropped by exploit kits as well as by other Trojans known as Trojan.BeamWinHTTP and Smoke Loader.
This Trojan uses a Trojanized wallet to flood Electrum nodes with requests.
Malwarebytes protects users from Trojan.ElectrumDoSMiner by using real-time protection.
Malwarebytes also blocks the known IPs that host the botnet Trojan.
Malwarebytes can detect and remove Trojan.ElectrumDoSMiner without further user interaction.
You can use the Malwarebytes Anti-Malware Nebula console to scan endpoints.
Choose the Scan + Quarantine option. Afterwards you can check the Detections page to see which threats were found.
On the Quarantine page you can see which threats were quarantined and restore them if necessary.
ElectrumDoSMiner infrastructure
178.159.37.113 194.63.143.226 217.147.169.179 188.214.135.174
Trojan.BeamWinHTTP
48dcb183ff97a05fd3e466f76f385543480abb62c9adcae24d1bdbbfc26f9e5a
Select your language