Техническая информация
- %HOMEPATH%\Start Menu\programs\startup\80hoder.lnk
- %ALLUSERSPROFILE%\Application Data\redoh08.cpp
- %ALLUSERSPROFILE%\Application Data\80hoder.fee
- '19#.#89.105.124':80
- '37.##9.53.204':443
- '<SYSTEM32>\rundll32.exe' %ALLUSERSPROFILE%\Application Data\redoh08.cpp,XXS1