Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'LOIC.exe' = '%TEMP%\LOIC.exe'
- %WINDIR%\explorer.exe
- %TEMP%\loic.exe
- DNS ASK xm######ast1.nanopool.org
- '%TEMP%\loic.exe'
- '%WINDIR%\explorer.exe' -B --donate-level=5 -a cryptonight --url=xmr-us-east1.nanopool.org:14444 -u 48H2VjxDcR7at8hNauaXXvazyUqfhbamWYSeHYFtdXg11iiCkbFHSSK3E89mND8794PMq2RwwZtpDRFh5GMMXUBV8QsMdD7 -p x -R --variant=-1 ...