Техническая информация
- '%TEMP%\bccjcabeddi.exe' 4-0-6-1-4-3-4-0-7-5-3 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420494244.txt bios get version
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420494244.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420494244.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsg2.tmp\iix.dll
- %TEMP%\insHv18.bccjcabeddi
- %TEMP%\bccjcabeddi.zip
- %TEMP%\insHv18.exe
- %TEMP%\nsg2.tmp\nsisunz.dll
- %TEMP%\81420494244.txt
- %TEMP%\tmp5.tmp
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\bccjcabeddi.zip
- %TEMP%\insHv18.bccjcabeddi
- %TEMP%\tmp4.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\insHv18.exe в %TEMP%\bccjcabeddi.exe