Техническая информация
- '%TEMP%\efcabfijceb.exe' 8-5-6-5-9-6-6-6-5-9-0 J0tDPzQtKiwtFy9LUDxLQD43KhsmTj1PUUpJRUM+OCcgJz9DTktDPjctJzIxMhoqOkM+NysXL0hNST9MPU5ZRDs9KTEzLxcpTT9NTUVKWk9NQzdibm9nOicqbW1tKD4/TkItTEpKKDhKSihERUZHGyk+Q0M9RUQ7PW9MRTIpTS4qLz1LPT9GQEAqMDJOQjgtMRoqOys3LTEsNC0tGio7LDcnLBcvPC43KCgaKT4vNC0pGyk/LDcnKxsmUEpKPlA6TllKTUBWOT5TOBcpSkxKO1U7T1lATEY7NxsmUEpKPlA6TllIPERFNRspQE8/WU9NQz0YKj9TPFk9Rz9DSUZANxsmQklNT1ZCSkpRTjxMNy0bJlRAPEhGUElPWVBJTDUbKVFENywaKjtTKTgaKklPSE5EREVXUj9HOklHP0REQT9AT01DNxopREpfSlBIT0BHPzdvaXVdGylNPE5PTElATj9aT048TFk+PFBTNS0aKj9DPj9TNDEYKkNOVj5TSDxESTtaP0k6TFNKTzxENWFbZ2pfGik/RldGR0k8O1lDSjgoNzApKy8nKCszMSUxKjEaKktDRz84KDQqMywvKSoyLhsmREdSSEdGOz5ZT0BNPTguKiwpLCosLCopNS8vMS4uJEtE
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81430471469.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81430471469.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81430471469.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsv2.tmp\btxjr.dll
- %TEMP%\1428235289.efcabfijceb
- %TEMP%\efcabfijceb.zip
- %TEMP%\1428235289.exe
- %TEMP%\nsv2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81430471469.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\1428235289.exe в %TEMP%\efcabfijceb.exe