Join GitHub today
GitHub is home to over 40 million developers working together to host and review code, manage projects, and build software together.Sign up
As you can see from the command line above Supercopier/Ultracopier launches a number of miner.exe processes which then connect out to a few domains associated with mining. At least hide your username from the command if you're going to try to pull something like this off...
Process Supercopier.exe made a DNS request to ultracopier.first-world[.]info and changed a registry value to ultracopier which makes me think this is the work of your Ultracopier despite the references to Supercopier in the command line.
Virustotal for Supercopier.exe: https://www.virustotal.com/en/file/b15fe48276d5280f2500aaa2aeabea0861f2317b1fc1843d08dfa9357aa92c3b/analysis/
Here are some disk operations preformed by this software for its miner:
You should probably not do this...
Please, again: where do you found this very old version?
I wish I could let you know more but I am only the analyst and messenger. I did not install your software on the computers I looked at. I also do not know how the users installed your software (whether it was legit or cracked).
I thought I would inform you and the users about my findings, thanks for being so responsive in clearing this up.