Техническая информация
- '%TEMP%\bcdbcabeddbgg.exe' 9-9-7-5-6-6-6-4-9-4-3 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420198927.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420198927.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420198927.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nso2.tmp\bvc.dll
- %TEMP%\insHv18.bcdbcabeddbgg
- %TEMP%\bcdbcabeddbgg.zip
- %TEMP%\insHv18.exe
- %TEMP%\nso2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81420198927.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\tmp4.tmp
- %TEMP%\insHv18.bcdbcabeddbgg
- %TEMP%\bcdbcabeddbgg.zip
- %TEMP%\tmp3.tmp
- %TEMP%\insHv18.exe в %TEMP%\bcdbcabeddbgg.exe