Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'Windows Defender Host' = '<LS_APPDATA>\Windows Defender Host.exe'
- %WINDIR%\Microsoft.NET\Framework\v2.0.50727\cvtres.exe
- <LS_APPDATA>\Windows Defender Host.exe
- 'xm#.###l.minergate.com':45700
- DNS ASK xm#.###l.minergate.com
- ClassName: '' WindowName: 'cvtres'
- '%WINDIR%\Microsoft.NET\Framework\v2.0.50727\cvtres.exe' --donate-level 1 -o stratum+tcp://xmr.pool.minergate.com:45700 -u i-am@therapist.net -p x -t 1