Cryptojacking campaign detected in the wild

Cryptojacking campaign in which the attackers exploit known DLL Side-Loading vulnerabilities in Microsoft OneDrive.

ATT&CK IDS: T1204 - User Execution, T1106 - Native API, T1547 - Boot or Logon Autostart Execution, T1073 - DLL Side-Loading, T1055 - Process Injection, T1057 - Process Discovery, T1082 - System Information Discovery, T1496 - Resource Hijacking

