Техническая информация
- '%TEMP%\bbfcabfebcbc.exe' 7-2-4-5-9-4-2-5-9-4-1 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81423249149.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81423249149.txt bios get serialnumber
- %TEMP%\tmp5.tmp
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\81423249149.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp4.tmp
- %TEMP%\bbfcabfebcbc.zip
- %TEMP%\insHv26.bbfcabfebcbc
- %TEMP%\tmp3.tmp
- %TEMP%\insHv26.exe
- %TEMP%\81423249149.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\insHv26.exe в %TEMP%\bbfcabfebcbc.exe