The TeamTNT cybercrime group has added a new detection-evasion tool to its arsenal. The tool, libprocesshider, is copied from open-source repositories. It aims to hide the malicious process from process information programs such as ps and lsof The tool is delivered within a base64-encoded script, hidden in the cryptominer binary, or via its Internet Relay Chat (IRC) bot, TNTbotinger.
Source: https://threatpost.com/teamtnt-cloaks-malware-open-source-tool/163414/

