Техническая информация
- '%TEMP%\bccicabeddcac.exe' 1-3-2-6-8-5-9-8-4-2-0 Lk1HPjUsKigtMSAuUFM8SEQ7NSweL01CUlFHTUJBQDswHyxCQ0tPQDw5MDQ2MTcaJz5APDkuIC5NUEk8UDpMW0dEPC8yKiwvFydPQ1JVQlBZTU1DNWRydG83LSlrYGluKnJoZCpfamgoW1lwXy5oa2RpGCo6REVBS0hBOy0sNDAoLDE3LGA3MC0oKyk0MC1hNjBcJSsnXjU0MzNeZDJcMRcnQC89MB0tPio4JCkcLUQyOisrGCo7LDkrMR8sQi81KCgYK05STkFTPUxaR0pFVEFCVjsaJ0tJR0BTQ1NcQ09EPDQYK05STkFTPUxaRTlJQz0fLENSPVpMSkg7IC5CVj9XPkQ8SEdORDoeKUBKSkxbQFJOVFE/SjgpGCtSSEBLSVNHUFZNTko9HyxSQ0VANCkwLzk2NTAuKDMXJ1JLPTEdLT5LLDRvcytma2xuJ21maWdqYWgfLFBPRk9ARUFdV0RJQUlFQEBFPUVFVE9KNxgqQEtbUFVNUUdHPThranFjIC5PQ05NTUVBSkVfVFBDTFc/OFFPOzIfLEZDPEBPNS0eL0hQXT5RSThFRUFfREtBTFFLSz1AO2ZgaXFfGCo7R1NMTE4+QllMREQ9OS8yLi82KSorKCwmMjovLTgqMCVHRRwtRE5UTEZHPDtXRU49Ny0sMSY0MCYuMTA=
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420544344.txt bios get version
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420544344.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420544344.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsm2.tmp\iix.dll
- %TEMP%\insHv18.bccicabeddcac
- %TEMP%\bccicabeddcac.zip
- %TEMP%\insHv18.exe
- %TEMP%\nsm2.tmp\nsisunz.dll
- %TEMP%\81420544344.txt
- %TEMP%\tmp5.tmp
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\bccicabeddcac.zip
- %TEMP%\insHv18.bccicabeddcac
- %TEMP%\tmp4.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\insHv18.exe в %TEMP%\bccicabeddcac.exe