Техническая информация
- '%TEMP%\bccicabeddbfj.exe' 7-8-5-4-8-1-2-0-2-2-0 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420550470.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420550470.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420550470.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsj2.tmp\iix.dll
- %TEMP%\insHv18.bccicabeddbfj
- %TEMP%\bccicabeddbfj.zip
- %TEMP%\insHv18.exe
- %TEMP%\nsj2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81420550470.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\tmp4.tmp
- %TEMP%\insHv18.bccicabeddbfj
- %TEMP%\bccicabeddbfj.zip
- %TEMP%\tmp3.tmp
- %TEMP%\insHv18.exe в %TEMP%\bccicabeddbfj.exe