Bitcoin miner on the network? Need help, please!

DMGrier

New Member
Power User
Messages
249
Location
Canon City
Hello comunity,
So it was brought to attention that one of our senior IT's at my company which I cannot disclose our name might be using a Bitcoin miner on our network without the knowledge of management. Another IT found it under the senoir IT's profile and it is called Quarkcpu_Miner. We also founf it located under his desktop folder located on 35 other employee machines.

The question is how can we see if they are running on the machines and is there a way to monitor the network traffic on the company network and output to a log so we could catch the person using this app. Does Bitcoin mining pose a threat to the security of the network as a whole? If you have any information or input I would appreciate it, Thanks.
 

My Computer

System One

  • OS
    Windows 8.1 Pro 64 Bit
    Computer type
    Laptop
    System Manufacturer/Model
    Sager NP2740
    CPU
    Intel Core i7 4702HQ 2.2 GHz
    Motherboard
    W740SU
    Memory
    8 GB 1600 MHz
    Graphics Card(s)
    Intel Iris Pro 5200
    Sound Card
    High Defenition Audio
    Monitor(s) Displays
    IPS Display
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung SSD 840 EVO 250 GB mSATA
    Internet Speed
    60 Mbps cable, NETGEAR Night Hawk AC1900
    Browser
    Firefox 38.0.5
    Antivirus
    Windows Defender & Malwarebytes Pro
Hello comunity,
So it was brought to attention that one of our senior IT's at my company which I cannot disclose our name might be using a Bitcoin miner on our network without the knowledge of management. Another IT found it under the senoir IT's profile and it is called Quarkcpu_Miner. We also founf it located under his desktop folder located on 35 other employee machines.

The question is how can we see if they are running on the machines and is there a way to monitor the network traffic on the company network and output to a log so we could catch the person using this app. Does Bitcoin mining pose a threat to the security of the network as a whole? If you have any information or input I would appreciate it, Thanks.

I would leave that for your IT director/CIO/Security Officer to handle
 

My Computer

System One

  • OS
    Windows 8
Yes, this is a very serious threat and I agree with garydexter.
 

My Computer

System One

  • OS
    Win 10 Pro 64bit
    Computer type
    PC/Desktop
    System Manufacturer/Model
    Home built Intel i7-3770k-based system
    CPU
    Intel i7-3770k, Overclocked to 4.6GHz (46x100) with Corsair H110i GT cooler
    Motherboard
    ASRock Z77 OC Formula 2.30 BIOS
    Memory
    32GB DDR3 2133 Corsair Vengeance Pro
    Graphics Card(s)
    GeForce GTX 980ti SC ACS 6GB DDR5 by EVGA
    Sound Card
    Creative Sound Blaster X-Fi Titanium HD, Corsair SP2500 speakers and subwoofer
    Monitor(s) Displays
    LG 27EA33 [Monitor] (27.2"vis) HDMI
    Screen Resolution
    1920x1080
    Hard Drives
    Samsung SSD 850 EVO 250GB (system drive)
    WD 6TB Red NAS hard drives x 2 in Storage Spaces (redundancy)
    PSU
    Corsair 750ax fully modular power supply with sleeved cables
    Case
    Corsair Air 540 with 7 x 140mm fans on front, rear and top panels
    Cooling
    Corsair H110i GT liquid cooled CPU with 4 x 140" Corsair SP "push-pull" and 3 x 140mm fans
    Keyboard
    Thermaltake Poseidon Z illuminated keyboard
    Mouse
    Corsair M65 wired
    Internet Speed
    85MBps DSL
    Browser
    Chrome and Edge
    Antivirus
    Windows Defender, MalwareBytes Pro and CCleaner Pro
    Other Info
    Client of Windows Server 2012 R2 10 PC's, laptops and smartphones on the WLAN.

    1GBps Ethernet ports
Back
Top