-
plowsofThis reminds me of that easy node garbage github.com/MrCrypPrivacy/qr_generator
-
plowsofThe chefs kiss is the uploaded exe in releases
-
plowsofSize discrepancy of the
-
plowsofSomeone on reddit shared monerofx.com and i noticed some odd things there. This qr generator being one of them
-
elucidatorlooks like the noob that cloned p2pool repo and named it similarly then uploaded malwared p2pool exe in the releases. which i reversed and shared my findings with sech1. it was an obfuscated vbscript malware + actual p2pool exe from official github releases. our reports got the repo removed in a short time.
-
elucidatorfrom the forensics, looked like it was generated on a RU windows instance, which was a shame considering sech1 :D