Техническая информация
- '%TEMP%\bcbjcabedgbid.exe' 0-4-6-8-1-0-2-6-7-3-2 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81421639230.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81421639230.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsm2.tmp\ccf.dll
- %TEMP%\insHv21.bcbjcabedgbid
- %TEMP%\bcbjcabedgbid.zip
- %TEMP%\insHv21.exe
- %TEMP%\nsm2.tmp\nsisunz.dll
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\insHv21.bcbjcabedgbid
- %TEMP%\bcbjcabedgbid.zip
- %TEMP%\tmp3.tmp
- %TEMP%\insHv21.exe в %TEMP%\bcbjcabedgbid.exe