Техническая информация
- '%TEMP%\bhcabfdcjj.exe' 9-4-3-5-6-4-7-4-1-0-5 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81429630986.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81429630986.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81429630986.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsa2.tmp\jjff.dll
- %TEMP%\insHv17.bhcabfdcjj
- %TEMP%\bhcabfdcjj.zip
- %TEMP%\insHv17.exe
- %TEMP%\nsa2.tmp\nsisunz.dll
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81429630986.txt
- %TEMP%\insHv17.bhcabfdcjj
- %TEMP%\bhcabfdcjj.zip
- %TEMP%\tmp3.tmp
- %TEMP%\insHv17.exe в %TEMP%\bhcabfdcjj.exe