Техническая информация
- '%TEMP%\bbbcabfbbbcf.exe' 8-7-7-3-8-4-5-4-0-2-3 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420977547.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81420977547.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81420977547.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsc2.tmp\utu.dll
- %TEMP%\insHv3.bbbcabfbbbcf
- %TEMP%\bbbcabfbbbcf.zip
- %TEMP%\insHv3.exe
- %TEMP%\nsc2.tmp\nsisunz.dll
- %TEMP%\81420977547.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\tmp5.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\insHv3.exe в %TEMP%\bbbcabfbbbcf.exe