Техническая информация
- '%TEMP%\bdbcabfdcbjj.exe' 8-6-7-6-3-0-3-9-8-9-1 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81424220904.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81424220904.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81424220904.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsy2.tmp\ob01.dll
- %TEMP%\insHv17.bdbcabfdcbjj
- %TEMP%\bdbcabfdcbjj.zip
- %TEMP%\insHv17.exe
- %TEMP%\nsy2.tmp\nsisunz.dll
- %TEMP%\81424220904.txt
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\insHv17.exe в %TEMP%\bdbcabfdcbjj.exe