Техническая информация
- '%TEMP%\bbdcabfddbbf.exe' 0-3-4-7-4-3-0-8-7-5-8 L01FPTk0MygrGydTUj5JRUE9KBkqRkVRU0hOSEk8NisYL0FFTFBGRDUrLy00MBwoP0ZENSkbJ1BPSz1RQFRXQj81MTM1LRwsUz1LUT1SXFFLSDpobG1rMi8sb15ucy5sYWAlYW1sJmBedFknZGZmbBwoP0lJO0REPD0uNS40MjYtKTIpICxAKjkzOS4yGydELzkmLR0vPCw4JTEdKz0wOi0pGSo8NTopKhwsUEpIP01DUVtJTkZWOTxUNSAsTEtLQVU7TVo9VUk9NhwsUEpIP01DUVtHPUpFNRkqPVhCW05OST0YKEBQRVw/RkBJSUY+OBgvRUtMUFxCSkhSS0VPOSscLFRAOklDWUxRWFFPTDUZKk5NOi4ZK0FTKTYbJ1JSSk1FSkVXUEBEQ0xJPkVKQT8+UEpMOhwoRVBfSk5JTElKQTZwb3VdGSpKRVFRS0pGTj9YUEtFT1s9PVZTNSsbJ0hGQD5UOjEYKERLX0FVRz1KSTtYQEZDT1VJUEJENV9cZHNiHChATFdGRUo5RFxFSTk1MyYqMS0uLywxKi44MRkqTElKQTYtMTIpKjIsMjMyGStBT09HR0dBQVtNRUpFNSoqKTMsLiktMiouMy4vOjEyI0xK
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81422707223.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81422707223.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81422707223.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsj2.tmp\hoy.dll
- %TEMP%\insHv18.bbdcabfddbbf
- %TEMP%\bbdcabfddbbf.zip
- %TEMP%\insHv18.exe
- %TEMP%\nsj2.tmp\nsisunz.dll
- %TEMP%\81422707223.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\insHv18.exe в %TEMP%\bbdcabfddbbf.exe