Техническая информация
- '%TEMP%\bbjcabfeaia.exe' 2-3-2-4-4-9-2-1-9-9-8 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81422380002.txt bios get serialnumber
- %TEMP%\insHv25.exe
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\nsw2.tmp\nsisunz.dll
- %TEMP%\insHv25.bbjcabfeaia
- %TEMP%\nsw2.tmp\day.dll
- %TEMP%\bbjcabfeaia.zip
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\tmp3.tmp
- %TEMP%\insHv25.exe в %TEMP%\bbjcabfeaia.exe