Техническая информация
- '%TEMP%\bicabfeabgb.exe' 1-9-5-6-6-5-7-2-4-9-2 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427250423.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427250423.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81427250423.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsn2.tmp\jjff.dll
- %TEMP%\insHv25.bicabfeabgb
- %TEMP%\bicabfeabgb.zip
- %TEMP%\insHv25.exe
- %TEMP%\nsn2.tmp\nsisunz.dll
- %TEMP%\81427250423.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\insHv25.exe в %TEMP%\bicabfeabgb.exe