Warning message... Link to action
Read about our in-depth analysis of a new high-volume campaign that marked the resurgence of notorious malware-as-a-service Hawkeye Keylogger. Read the blog post
Aliases: No associated aliases
Windows Defender Antivirus detects and removes this threat.
TrojanDownloader:Win32/Esendi.A has been observed downloading this coin mining trojan and dropping it into the Temp folder as setup_x86.tmp.
This coin miner is a trojanized version of the XMRig coin mining application, an open source, CPU-based Monero (XMR) miner.