Техническая информация
- '%TEMP%\bfcabfbbbcd.exe' 2-7-1-1-4-1-8-8-6-7-1 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420458790.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420458790.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsp2.tmp\llff.dll
- %TEMP%\insHv3.bfcabfbbbcd
- %TEMP%\bfcabfbbbcd.zip
- %TEMP%\insHv3.exe
- %TEMP%\nsp2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\tmp4.tmp
- %TEMP%\insHv3.bfcabfbbbcd
- %TEMP%\bfcabfbbbcd.zip
- %TEMP%\tmp3.tmp
- %TEMP%\insHv3.exe в %TEMP%\bfcabfbbbcd.exe