Техническая информация
- '<SYSTEM32>\taskkill.exe' /im Setup.exe /f
- %TEMP%\RarSFX0\Setup.exe
- %TEMP%\RarSFX0\ser.bat
- %TEMP%\RarSFX0\Setup.exe
- %TEMP%\RarSFX0\ser.bat
- ClassName: 'MainClass' WindowName: '8208A21B'
- ClassName: '' WindowName: ''
- ClassName: 'EDIT' WindowName: ''
- '%TEMP%\RarSFX0\Setup.exe' -o stratum+tcp://xmr.pool.minergate.com:45560 -u sublimetr@yandex.com -p -x -k --av=1 --donate-level=1 --safe -B
- '<SYSTEM32>\cmd.exe' /c ""%TEMP%\RarSFX0\ser.bat" "