What is JS:Cryptonight Miner Virus and How to Remove It

What is JS:Cryptonight Miner Virus and How to Remove It

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)

This article has been created in order to help you by demonstrating how to remove the JS:Cryptonight miner for the cryptocurrency Monero and how to protect your MacBook against future miners as well.

SIDENOTE: This post was originally published in August 2018. But we gave it an update in August 2019.

A new cryptocurrency miner, this time exclusively for MacBooks, which mines for the crytpocurrency Monero. The miner runs on JavaScript and is known as the algorithm Cryptonight it uses to mine for the Monero cryptocurrency. Once this malware infects your computer it may begin to slow it down by heavily using it’s CPU as well as GPU resources in order to generate Monero at your Mac’s expense. If you believe that your computer has been infected by the JS:Cryptonight crypto mining malware, we advise you to read this article and learn how to remove it from your computer.

Threat Summary

TypeCryptocurrency mining malware.
Short DescriptionRuns on JavaScript code and mines for the cryptocurrency Monero.
SymptomsMay overheat your CPU and GPU by using them to mine for the cryptocurrency Monero.
Distribution MethodVia malicous web links, e-mails and other third-party content.
Detection Tool See If Your System Has Been Affected by JS:Cryptonight


Malware Removal Tool

User ExperienceJoin Our Forum to Discuss JS:Cryptonight.

JS:Cryptonight Malware – Spread

In order to infect the maximum amount of victims, the virus files of this malware may be spread in a multitude of methods. These include spreading the malicious files by sending malicious spam e-mails as well as other content to you online. These e-mails often contain false statements to get you to click on a web link or download a malicious attachmnent, for example:

Once the victim clicks on the web link, a JavaScript is activated and the virus may begin to perform it’s malicious activity by downloading and executing a process in your MacBook or running filelessly.

JS:Cryptonight – More Information

Once this malware is activated on your computer, it may drop it’s malicious processes and they may have different names on your computer. The file are usually located in various commonly targeted directories or ran filelessly.

After the malicious files, belonging to JS:Cryptonight are ran, the virus may obtain administrative permissions, touch system files as well as create mutexes. Then, the JS:Cryptonight runs a malicious process in the background of your computer, which may result in your CPU usage spiking severely.

Image Source: MakeUseOf.com

In addition to this, since it is malware after all, the JS:Cryptonight may also perform other activities on your computer system, such as:

  • Update itself.
  • Download other malware.
  • Collect important information from your computer system.

Be advised that the miner primarily targets the GPU of your MacBook since it uses the Cryptonight algorithm which is a proof of work and utilized to mine exclusively for Monero. The way the mining process occurs is by getting the MacBook to be enlisted in a so-called mining pool. This makes it possible to turn the infected device into a miner and generate crypto money for the cyber-criminals at your PC’s expense. Since the process is particularly dangerous and can even damage your computer in the long-term, security experts strongly advise to remove it from your computer.

Remove JS:Cryptonight from Your Computer

In order to remove the JS:Cryptonight from your computer, we recommend that you do this automatically, since manual removal requires an extensive experience in this field. To do this, you can use Kaspersky’s latest security software against miner malware, like JS:Cryptonight, which besides removing the virus at a click of a button will also make sure that your Mac stays protected against future infections as well.


Ventsislav Krastev

Ventsislav has been covering the latest malware, software and newest tech developments at SensorsTechForum for 3 years now. He started out as a network administrator. Having graduated Marketing as well, Ventsislav also has passion for discovery of new shifts and innovations in cybersecurity that become game changers. After studying Value Chain Management and then Network Administration, he found his passion within cybersecrurity and is a strong believer in basic education of every user towards online safety.

More Posts - Website

Follow Me:

Leave a Comment

Your email address will not be published. Required fields are marked *

Time limit is exhausted. Please reload CAPTCHA.

Share on Facebook Share
Share on Twitter Tweet
Share on Google Plus Share
Share on Linkedin Share
Share on Digg Share
Share on Reddit Share
Share on Stumbleupon Share