Техническая информация
- '%TEMP%\bcicabfebbfe.exe' 0-5-2-9-8-4-6-8-6-2-9 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427268664.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427268664.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81427268664.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsp2.tmp\ipa.dll
- %TEMP%\insHv26.bcicabfebbfe
- %TEMP%\bcicabfebbfe.zip
- %TEMP%\insHv26.exe
- %TEMP%\nsp2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81427268664.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\insHv26.exe в %TEMP%\bcicabfebbfe.exe