Техническая информация
- '%TEMP%\bcjcabfhdbeg.exe' 4-0-9-6-7-9-7-9-1-1-9 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81432816446.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81432816446.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81432816446.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsi2.tmp\ob01.dll
- %TEMP%\insHv58.bcjcabfhdbeg
- %TEMP%\bcjcabfhdbeg.zip
- %TEMP%\insHv58.exe
- %TEMP%\nsi2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81432816446.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\insHv58.exe в %TEMP%\bcjcabfhdbeg.exe