⚠ Switch to EXCALIDRAW VIEW in the MORE OPTIONS menu of this document. ⚠ You can decompress Drawing data with the command palette: ‘Decompress current Excalidraw file’. For more info check in plugin settings under ‘Saving’

Excalidraw Data

Text Elements

DLLMain

DLL is loaded

anti-dbg

thread 3 (sub_62F42340)

anti-dbg (Sleep)

aimbot functionalities

thread 1 (sub_62F41C30)

CreateThread

CreateThread

CreateThread

thread 2 (sub_62F43070)

Create dir “C:\depot”

loop

sub_62F42300

anti-dbg

deobfuscate content

send request to miner endpoint to get configuration

get value frmo JSON key “version: ”

sub_62F43A20 - Get XMRIG configuration

sub_62F42300

sub_62F439B0

user-agent: “bananabot 5000” url: “http://127.0.0.1:57238/2/summary