Техническая информация
- '%TEMP%\bhcabfhbhg.exe' 0-7-2-4-2-3-0-8-7-2-4 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420684448.txt bios get version
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420684448.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420684448.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsr2.tmp\jjff.dll
- %TEMP%\insHsmg.bhcabfhbhg
- %TEMP%\bhcabfhbhg.zip
- %TEMP%\insHsmg.exe
- %TEMP%\nsr2.tmp\nsisunz.dll
- %TEMP%\81420684448.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\insHsmg.exe в %TEMP%\bhcabfhbhg.exe