Техническая информация
- [<HKLM>\System\CurrentControlSet\Services\WinRing0_1_2_0] 'ImagePath' = '%APPDATA%\WinCFG\Libs\WinRing0x64.sys'
- 'WinRing0_1_2_0' %APPDATA%\WinCFG\Libs\WinRing0x64.sys
- %WINDIR%\explorer.exe
- %APPDATA%\wincfg\libs\winring0x64.sys
- 'us####t.minexmr.com':7777
- DNS ASK us####t.minexmr.com
- '%WINDIR%\explorer.exe' -B --coin=monero --url=us-west.minexmr.com:7777 --user=896FhvqoF5VKJnkH7oZa7J6FAxAxAq5bqXw4FfbvSrSU1BzusF1XbBsWiD48Ab2ZDqKzZKR8MhFxpdVitf7E3ijmTPLGepu --pass= --cpu-max-threads-hint=70 --donat...