Техническая информация
- '%TEMP%\bbcabfbbcbh.exe' 1-5-0-7-4-5-7-2-4-6-3 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420136768.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420136768.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420136768.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsg2.tmp\bvc.dll
- %TEMP%\insHv3.bbcabfbbcbh
- %TEMP%\bbcabfbbcbh.zip
- %TEMP%\insHv3.exe
- %TEMP%\nsg2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81420136768.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\tmp4.tmp
- %TEMP%\insHv3.bbcabfbbcbh
- %TEMP%\bbcabfbbcbh.zip
- %TEMP%\tmp3.tmp
- %TEMP%\insHv3.exe в %TEMP%\bbcabfbbcbh.exe