Техническая информация
- '%TEMP%\bccccabedhcch.exe' 7-1-3-6-1-6-0-1-5-1-6 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81422174184.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81422174184.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81422174184.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nse2.tmp\ooi.dll
- %TEMP%\insHv22.bccccabedhcch
- %TEMP%\bccccabedhcch.zip
- %TEMP%\insHv22.exe
- %TEMP%\nse2.tmp\nsisunz.dll
- %TEMP%\81422174184.txt
- %TEMP%\tmp5.tmp
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\bccccabedhcch.zip
- %TEMP%\insHv22.bccccabedhcch
- %TEMP%\tmp4.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\insHv22.exe в %TEMP%\bccccabedhcch.exe