Техническая информация
- '%TEMP%\bbgcabfebjh.exe' 3-6-8-8-3-2-4-2-5-2-1 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81423251440.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81423251440.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsv2.tmp\you.dll
- %TEMP%\insHv26.bbgcabfebjh
- %TEMP%\bbgcabfebjh.zip
- %TEMP%\insHv26.exe
- %TEMP%\nsv2.tmp\nsisunz.dll
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\tmp3.tmp
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\insHv26.exe в %TEMP%\bbgcabfebjh.exe