Техническая информация
- '%TEMP%\bhcabfbbbhg.exe' 4-1-1-6-2-9-8-0-9-5-0 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420684504.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420684504.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420684504.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsg2.tmp\jjff.dll
- %TEMP%\insHv3.bhcabfbbbhg
- %TEMP%\bhcabfbbbhg.zip
- %TEMP%\insHv3.exe
- %TEMP%\nsg2.tmp\nsisunz.dll
- %TEMP%\81420684504.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\tmp5.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\insHv3.exe в %TEMP%\bhcabfbbbhg.exe