Техническая информация
- '%TEMP%\bdbcabficbbd.exe' 7-8-8-4-3-1-8-7-2-6-8 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427274251.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427274251.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81427274251.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsw2.tmp\ob01.dll
- %TEMP%\insHv67.bdbcabficbbd
- %TEMP%\bdbcabficbbd.zip
- %TEMP%\insHv67.exe
- %TEMP%\nsw2.tmp\nsisunz.dll
- %TEMP%\81427274251.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\tmp5.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\insHv67.exe в %TEMP%\bdbcabficbbd.exe