Техническая информация
- '%TEMP%\bccicabeddjj.exe' 7-3-3-6-1-7-9-9-8-1-3 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420276997.txt bios get serialnumber
- %TEMP%\insHv18.exe
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\nsf2.tmp\nsisunz.dll
- %TEMP%\insHv18.bccicabeddjj
- %TEMP%\nsf2.tmp\iix.dll
- %TEMP%\bccicabeddjj.zip
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\tmp3.tmp
- %TEMP%\insHv18.bccicabeddjj
- %TEMP%\bccicabeddjj.zip
- %TEMP%\insHv18.exe в %TEMP%\bccicabeddjj.exe