Техническая информация
- '%TEMP%\bbecabffabfg.exe' 4-6-4-5-8-6-7-5-5-9-4 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81421283375.txt bios get serialnumber
- %TEMP%\insHv35.exe
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\nsx2.tmp\nsisunz.dll
- %TEMP%\insHv35.bbecabffabfg
- %TEMP%\nsx2.tmp\raw.dll
- %TEMP%\bbecabffabfg.zip
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\tmp3.tmp
- %TEMP%\insHv35.exe в %TEMP%\bbecabffabfg.exe