Техническая информация
- '%TEMP%\bccbcabeddeb.exe' 8-8-6-2-4-3-2-8-5-0-8 J0hDQjkuMSgyMxgnS09ATEZCNSsgJ0Y9TlVLT0lBPz0oGCc+R09RRzw4MiwwLzEeK0BHPDgwGCdITE1AUkFMWkk8NSstMDEdLUtAUk49SllTTkk7YG90aDInKXFhb3Qmb2hdJVlqbilhX2xcLmFmXmkeK0BKQT5LQTw1Y1ItLVYsLWEwRxgpQi06TE1IQj1KGClCLjorKRsvPCs1Jy8cLEIsOC0pGCc+MzkqLxgqUEpHPE9BUFxOSkRWOTtRNx4rTVBHP1U7TFc/U0g+OxgqUEpHPE9BUFxMOUhFNRgnP1ZBXFNKRz0YJz1SQ1tASzxHSUY9NRotRExRTFpCSkdPTUNOOjAYKlRAOUZFV0tSXU1NTDUYJ05HSUI7KS8xMSkrMzEtMh4nUU01KhgpQk8uOxgqUk1GTENLQVxVPUdDR0U9Q0s9RENNTUw1GCdDUVtPU0ZPSUU9NW5wcWIeJ01FTE1KSEdKRF1NTkVKVzw7V086MBgqSEE8PVI7LR0tQU5fPFFGO0tFQF09SUNKUUhOQ0A6ZFlnc10YJz5NU0tKRzxEV0xBR0M5LjAnLTEnKigrMiYyOCosOi0tIjtLHCxCR1JOREc5Pl1FTTspLTMmKigrLC4uMyYtMg==
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420494842.txt bios get version
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420494842.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420494842.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsy2.tmp\ccf.dll
- %TEMP%\insHv18.bccbcabeddeb
- %TEMP%\bccbcabeddeb.zip
- %TEMP%\insHv18.exe
- %TEMP%\nsy2.tmp\nsisunz.dll
- %TEMP%\81420494842.txt
- %TEMP%\tmp5.tmp
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\bccbcabeddeb.zip
- %TEMP%\insHv18.bccbcabeddeb
- %TEMP%\tmp4.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\insHv18.exe в %TEMP%\bccbcabeddeb.exe