Техническая информация
- '%TEMP%\bbdcabfeccb.exe' 9-1-2-7-4-7-7-9-8-8-4 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81422724692.txt bios get version
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81422724692.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81422724692.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsz2.tmp\hoy.dll
- %TEMP%\insHv27.bbdcabfeccb
- %TEMP%\bbdcabfeccb.zip
- %TEMP%\insHv27.exe
- %TEMP%\nsz2.tmp\nsisunz.dll
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81422724692.txt
- %TEMP%\tmp3.tmp
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\insHv27.exe в %TEMP%\bbdcabfeccb.exe