Техническая информация
- [<HKLM>\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] 'WindowsSync' = '%TEMP%\piggy\cpuminer.exe'
- '%TEMP%\piggy\cpuminer.exe'
- '%TEMP%\piggy\unzip.exe' -qq -o cpuminer.zip
- '%TEMP%\piggy\crack.exe'
- %TEMP%\piggy\libwinpthread-1.dll
- %TEMP%\piggy\libcurl-4.dll
- %TEMP%\piggy\minerd.exe
- %TEMP%\piggy\cpuminer.exe
- %TEMP%\piggy\zlib1.dll
- %TEMP%\piggy\crack.exe
- %TEMP%\piggy\unzip.exe
- %TEMP%\aut1.tmp
- %TEMP%\aut2.tmp
- %TEMP%\aut3.tmp
- %TEMP%\piggy\cpuminer.zip
- %TEMP%\piggy\unzip.exe
- %TEMP%\piggy\cpuminer.zip
- %TEMP%\piggy\crack.exe
- %TEMP%\aut1.tmp
- %TEMP%\aut2.tmp
- %TEMP%\aut3.tmp
- 'sm##.gmail.com':25
- DNS ASK sm##.gmail.com
- ClassName: 'Shell_TrayWnd' WindowName: '(null)'