UnamSanctam / SilentXMRMiner

A Silent (Hidden) Monero (XMR) Miner Builder
MIT License
570 stars 163 forks source link

is this normal? #421

Closed dondo1 closed 3 years ago

dondo1 commented 3 years ago

hey dev please help me out, I am using the silent XMR miner and I have shared it to almost 200 people, but i still seem to be making only 0.0003 dollars a day, I am using nanopool as the pool, and in nanopool it always show 0 workers even though it seems to be mining, is it normal that its showing 0 workers, and the miner seems to start and stop, if it isn't normal please let me know what might be the issue , because i shared it to a lot of people I dont think 0.0003 dollar a day is normal. please reply asap dev, I have attached the graph from nanopool Capture

UnamSanctam commented 3 years ago

Have you done anything to reduce detections or nothing at all?

dondo1 commented 3 years ago

I don't remember well I am a total noob at this but I think I enabled pause for obfuscation and require admin privileges, and I have been reading your github closed questions and found out the issue with the no worker names I have since changed that and build a new miner and I am currently testing it to see if my computer names is in nanopool workers

dondo1 commented 3 years ago

I have over 100 downloads on my file and even if half of the Downloaders started the miner I don't think 0.0003 a day is good...

dondo1 commented 3 years ago

Alright I am currently testing a miner on my pc, I have set the miner to 100% and it has started mining I can see my name in worker and I can see that I have received some xmr in unconfirmed balance, I have resolved the worker name issue but please let me know if you know anything about the graph it goes down and starts back up again and again it's never mining all the time it turns on and off from what I can understand in the miner.

dondo1 commented 3 years ago

Anything you know that causes it?

dondo1 commented 3 years ago

Dev it happened again dipped to 0 and back up while testing it on my pc. Here are my settings let me know what I should change and try again. 20210908_064503.jpg20210908_064512.jpg20210908_064523.jpg20210908_064533.jpg

UnamSanctam commented 3 years ago

Since you don't have "Install" enabled it will only run until the computer is restarted since it never installs itself.

dondo1 commented 3 years ago

No I did have it enabled, I just disabled it as I was testing on my pc

UnamSanctam commented 3 years ago

Well, the {%COMPUTERNAME%} is wrong, it's {COMPUTERNAME} since a few versions ago due to batch conflicts. Other than that I would guess your file is maybe detected, you can try using https://github.com/UnamSanctam/UnamDownloader with "Add Windows Defender exclusions" to reduce detections.

dondo1 commented 3 years ago

Well, the {%COMPUTERNAME%} is wrong, it's {COMPUTERNAME} since a few versions ago due to batch conflicts. Other than that I would guess your file is maybe detected, you can try using https://github.com/UnamSanctam/UnamDownloader with "Add Windows Defender exclusions" to reduce detections.

But if the file is deleted it would just stop mining completely, why does it dip to zero randomly? You know if anything in the miner settings that might have caused this?

UnamSanctam commented 3 years ago

The dips themselves aren't abnormal during mining since that's how mining works https://help.nanopool.org/article/52-faq#6.-hashrate (point 3). The real hashrate is seen by the average, though of course the miner will pause if any "Stealth Targets" programs are open as well. Your graph just looks like it doesn't have many people mining, meaning that the other people could have had their antivirus remove it. For getting around Windows Defender you could either use my downloader or the new https://github.com/UnamSanctam/UnamBinder (or buy an obfuscator or crypter of course).

dondo1 commented 3 years ago

OK thank you boss, is it possible to use both binder and Downloader at same time, I don't know much about binder but will it work if I bind your Downloader with something else, let's say a mp4 or a movie or a pdf. When they open the pdf will the Downloader download the miner in the background and run it or is that not how it works let me know, if it doesn't work that you do you know of a way I can bind the miner to a pdf or a movie

UnamSanctam commented 3 years ago

Yes you can bind the downloader in the binder with something else or you could add more files in the downloader without using the binder. You won't really be able to make the built exe file into a pdf or mp4 of course unless you have an exploit or use something like an extension spoofer (though they have their downsides as well of course).

Anox208 commented 3 years ago

Bro you need to enable install https://user-images.githubusercontent.com/90292236/132438185-0d65e27c-f17f-40e3-9ec3-f21a4ea90866.jpg

Anox208 commented 3 years ago

This means everytime your victim restarts the miner gets deleted

Anox208 commented 3 years ago

Also give me ur discord. I want to talk to you about somethings

dondo1 commented 3 years ago

No I already had it enabled I just disabled as I was testing

dondo1 commented 3 years ago

Sure it's donfaris#4974

dondo1 commented 3 years ago

Well, the {%COMPUTERNAME%} is wrong, it's {COMPUTERNAME} since a few versions ago due to batch conflicts. Other than that I would guess your file is maybe detected, you can try using https://github.com/UnamSanctam/UnamDownloader with "Add Windows Defender exclusions" to reduce detections.

Dev I used download but now the issue is that even the download got flagged as a virus when the victim was downloading it. Any way around it?

UnamSanctam commented 3 years ago

Try rebuilding it, it can flag the MD5 checksum of the file.

SamYPay commented 3 years ago

image Hello everyone, this is my miner , could you make an update so that it is impossible to delete the miner?

dondo1 commented 3 years ago

Try rebuilding it, it can flag the MD5 checksum of the file.

What do you mean by rebuilding? I am not experienced in this

UnamSanctam commented 3 years ago

Create a new file with either https://github.com/UnamSanctam/UnamBinder or https://github.com/UnamSanctam/UnamDownloader. Everytime you create a new one it changes the code so detections will change.

dondo1 commented 3 years ago

It still gets flagged by anti virus, and when I stopped the chrome security to let it download, the Downloader didn't work the pc was not mining.

UnamSanctam commented 3 years ago

Can you post what detection you get from Windows Defender?

itvexesme commented 3 years ago

watchdog.exe Trojan:MSIL/Coinminer.GA!MTB

miner.dll nothing

result.exe Trojan:MSIL/AgentTesla.CHH!MTB

UnamSanctam commented 3 years ago

watchdog.exe Trojan:MSIL/Coinminer.GA!MTB

miner.dll nothing

result.exe Trojan:MSIL/AgentTesla.CHH!MTB

Yeah, the miner being detected without you obfusating/crypting it in any way is normal since it's a free, public and open source project, if you want it undetected by Windows Defender then you can use https://github.com/UnamSanctam/UnamBinder and use "Add Windows Defender exclusions".