macOS malware used run-only AppleScripts to avoid detection for five years
The macOS.OSAMiner has been active since 2015, primarily infecting users in Asia.
According to [labs.sentinelone.com]... [sentinelone.com], there are key files that you can look for to see if you are infected with OSAMiner.