Ahrefs Finds 1 in 7,353 Websites Are Running Cryptocurrency Mining Scripts

in web-mining •  7 years ago 

Ahrefs Finds 1 in 7,353 Websites Are Running Cryptocurrency Mining Scripts
By Melanie Kramer -April 10, 20180573

SEO tools provider and marketing data company Ahrefs analyzed 175 million websites in their database to find out exactly how many websites are crypto-mining using their visitor’s computers.

Cryptojacking is a growing issue for website owners and organizations globally, with many falling victim to cryptocurrency mining malware hacks. These hacks install mining scripts into websites allowing hackers to mine cryptocurrencies unbeknown to website visitors and owners.

Crypto-mining scripts can use website visitor’s computer systems, central processing units (CPUs), graphics processing units (GPUs) and their electricity, sending mining rewards to hackers at hidden cryptocurrency wallet addresses.

Website owners may also knowingly operate cryptocurrency mining scripts, but without warning visitors, using visitor’s computer power to mine cryptocurrencies for their own benefit.

In both cases, website visitors are not aware their systems are being used in this way unless they happen to notice their systems slow down or spot hikes in processor or browser activity.

Ahrefs crawled the 175 million websites in its database, including subdomains, with an application called Wappalyzer which reveals the technologies a website employs. Wappalyzer is able to identify 14 common crypto-mining scripts.

A total of 23,872 unique website domains out of the 175 million analyzed were found to be running cryptocurrency mining scripts. Of the total identified, most of them, at 93.82%, were running the Coinhive crypto-mining script.

Ahrefs went on to analyse how many visitors these sites are likely receiving via organic search from Google, most of which would be unaware they are mining cryptocurrency for hackers or site owners while they are browsing the site. Ahrefs estimated monthly search traffic based on search volumes and estimated click-through rates. They summarised that roughly 91% of websites with cryptocurrency mining scripts installed were getting less that 50 visitors via Google each month.

There are several reasons for traffic to these sites being low, the first is that hackers could be targeting abandoned, unattended websites with open vulnerabilities. The second is that high profile websites are both better protected and are unlikely to risk losing valuable visitors and reputation by knowingly operating crypto-mining programs. It has also been rumoured that Google Chrome blocks websites running crypto-mining scripts.

Finally, larger, more popular sites are likely to achieve a higher CPM for advertising and thus the incentives for running malware are less than they’d receive from conventional advertising.

Most of the websites identified also fell outside of Ahrefs’ top 100,000 domains according to the Ahref Domain Rating system. The Domain Rating system grades the popularity of a website based on the amount and quality of inbound links it has from other websites.

The 175 million websites analysed included subdomains. Of the 23,872-total found with crypto-mining scripts, 1,308 were subdomains. 1,257 out of the 1,308 were subdomains published on Google’s blogging platform, blogspot.com.

Ahrefs compared its results to those from a similar investigation by Troy Mursch of Bad Packets Report. The Bad Packets Report used data from the publicWWW database so included 17.5% more sites and only checked for 5 common crypto-mining scripts, including Coinhive.

The Bad Packets Report found 43,000 websites running crypto-mining scripts. The difference is, in part, attributed to PublicWWW being a historic database and including more inactive websites.

The conclusion from the study by Ahrefs is that an estimated 1 in 7,353 websites are running crypto-mining scripts, many of these being older sites with fewer visitors. Thus cryptojacking, or at least unwitting crypto-mining for the benefit of others, is possibly not as widespread as some assume.

That said, those that are affected and unwittingly mine cryptocurrencies may have seen a little extra wear and tear to their computer systems and a possible increase in their electricity bill.

Browser and website cryptojacking is not usually identified by antivirus or operating system protection. Users may or may not notice sudden spikes in CPU or GPU usage or activity surges in applications like Chrome Task Manager.

To fully protect systems and browsers, browser plugins such as minerBlock and No Coin are available which block crypto-mining scripts.

Here is a few examples

https://crypto-loot.com/

A Crypto Miner for your Website Visitors
Monetize Your Online Business With Your Visitors through their Web Browsers!

https://crypto-loot.com/signup
https://crypto-loot.com/#service
https://crypto-loot.com/#
Hashes/s
0.0
Total
0
Threads
2 + / −
START MINING

Stealth and Unintrusive.
Running our miner on your webite will go unnoticed by users after they click run if you set threads between 2-4.

Lightning Fast.
Our service utilizes lightning fast connections, DDoS protection, multiple websocket proxies, firewalls, and multiple database servers to ensure 99.9998% mining uptime!

Well documented.
We offer a variety of implementation options for your website and your users. See our Documentation for a list of other adjustable features.

Works Accross All Devices.
Our silent miner works accross all devices: Desktops, Laptops, Tablets, Phones, Windows, Linux, and iOS.

About.
Crypto-Loot offers a Browser based web miner for the Monero Blockchain that you can embed on your websites. We utilize Monero as it is the most fitting for web based mining, and supports the underlying principles of privacy. Your visitors automatically run the miner in their Browser and mine XMR for you in return for an ad-free experience, on-site currency or whichever incentives you decide on.

• Grant streaming time
• Offer Downloads
• Ad free Experience
• On-site Credit or rewards

https://crypto-loot.com/signup

Secure and Reliable Platform
Our number one priority is uptime, reliable payouts, and a secure platform. We will never jeopardize client security or privacy for any new feature.

We Are NOT a Dictatorship
Althought we recommend you use our service responsibly, we will not dictate you on how to use our software. How the software is used, is ultimately the end users resposibility.

Low Fees & Quick Payouts
We payout 88% of mined commissions, at minimum intervals of 0.3 XMR (Monero). This is the cheapest rate available, and we utilize the rest to help maintain our fast & secure network whilst adding new features to Crypto-Loot.

https://crypto-loot.com/tos
https://crypto-loot.com/contact
https://crypto-loot.com/referral-program

Copyright © 2018 Crypto-Loot. All rights reserved.

Mandatory script update - 4/15/2018
Please update to our latest script. The old script is no longer being tracked as of April 18th, as per our warning 72 hours prior to its expiration (April 15th). Please see the documentation if necessary.
Hashes/s
0 H/s
Total Hashes
0 H
Total Paid
0.000 XMR
Pending Payments
0.00 XMR
current payout 0.00007356 XMR per 1M hashes
(difficulty: 55.882G, block reward: 4.671 XMR, payout: 88%, updated: 2018-05-10 08:02:12am EST)
https://crypto-loot.com/dashboard/index.php
https://crypto-loot.com/dashboard/sites.php
https://crypto-loot.com/dashboard/user.php
https://crypto-loot.com/dashboard/payments.php
https://crypto-loot.com/dashboard/referrals.php
https://crypto-loot.com/dashboard/documentation.php
https://crypto-loot.com/dashboard/api.php
https://crypto-loot.com/dashboard/faq.php
Visit Manage Sites to add new sites for your visitors to mine.

Authors get paid when people like you upvote their post.
If you enjoyed what you read here, create your account today and start earning FREE STEEM!
Sort Order:  

Hi! I am a robot. I just upvoted you! I found similar content that readers might be interested in:
https://yournewsnetwork.com/2018/04/ahrefs-finds-1-in-7353-websites-are-running-cryptocurrency-mining-scripts/

Hello! Good article! I'm interested in the them of ICO and crypto-currency, I'll subscribe to your channel. I hope you will also like my content and reviews of the most profitable bounties and ICO, subscribe to me @toni.crypto
There will be a lot of interesting!

Congratulations @qanon1111! You have completed some achievement on Steemit and have been rewarded with new badge(s) :

Award for the number of upvotes

Click on any badge to view your own Board of Honor on SteemitBoard.
For more information about SteemitBoard, click here

If you no longer want to receive notifications, reply to this comment with the word STOP

Upvote this notification to help all Steemit users. Learn why here!