Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'AudioDriver321236835032' = '%TEMP%\1981253402.exe'
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'AudioDriver32' = '%TEMP%\1981253402.exe'
- '%TEMP%\jiX.exe'
- '%WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe' -o http://ab########.1:x@mine.pool-x.eu:8337 -t 2 -T 83 -a scrypt -g no -I 0
- %WINDIR%\Microsoft.NET\Framework\v2.0.50727\vbc.exe
- %TEMP%\1981253402.exe
- %TEMP%\jiX.exe
- ClassName: 'Indicator' WindowName: '(null)'