Their site also has the crypto miner running: is being embedded directly into the site.
Do cryptocurrency webminers in a blog violate adsense policies?
With the first introduction of JavaScript cryptocurrency miners running directly from browsers, it was quickly exploited by cyber-criminals.
sending executable files directly. Plenty of malware authors prefer to use RTF as an attack vector because RTF is an obfuscation-friendly format.
