Technical Information
- [<HKLM>\System\CurrentControlSet\Services\WinRing0_1_2_0] 'ImagePath' = '<Current directory>\WinRing0x64.sys'
- 'WinRing0_1_2_0' <Current directory>\WinRing0x64.sys
- <Current directory>\data.mdf
- <Current directory>\sqlconn.exe
- <Current directory>\ver.txt
- <Current directory>\sqlconn.exe
- 'dl.###e-network.cc':80
- 'se###.#ove-network.cc':2082
- http://dl.###e-network.cc/config.txt
- http://dl.###e-network.cc/data.mdf
- 'se###.#ove-network.cc':2082
- DNS ASK dl.###e-network.cc
- DNS ASK se###.#ove-network.cc
- '<Current directory>\sqlconn.exe' -o stratum+tcp://serv1.love-network.cc:2082 -u dgz -k --max-cpu-usage=50 --donate-level=1 -r3 --asm=AUTO --print-time=3 --nicehash -o stratum+tcp://serv2.love-network.cc:2082 -u dgz -k --max-cp...
- '<Current directory>\sqlconn.exe' -o stratum+tcp://serv1.love-network.cc:2082 -u dgz -k --max-cpu-usage=50 --donate-level=1 -r3 --asm=AUTO --print-time=3 --nicehash -o stratum+tcp://serv2.love-network.cc:2082 -u dgz -k --max-cp...' (with hidden window)