Техническая информация
- %HOMEPATH%\Start Menu\Programs\Startup\hriowlod.lnk
- '<SYSTEM32>\rundll32.exe' %ALLUSERSPROFILE%\Application Data\dolwoirh.cpp,XXS1
- %ALLUSERSPROFILE%\Application Data\hriowlod.fee
- %ALLUSERSPROFILE%\Application Data\dolwoirh.cpp
- '37.##9.53.204':443
- '19#.#89.105.124':443