Техническая информация
- '%TEMP%\cfcabfibcdg.exe' 7-5-6-8-7-9-9-6-5-6-6 KEtDPDYoMDMvMhooTk86SUA7NysaKUdATk9ISUJDPzcrGSo+QUxLQD44LDAuKzIYKDpAPjgqGihLTEc9TDpOWkM+Ni0vLyknFylOP0xPQExXTklDN2Nubmk1KSdsXGlwKW5iXihbaGkkW1tvWyhiaWBnGSY6RkQ9RUI/NxgoOyg3KCsaKD8sNSYoFyk/LTcmLBonPSs0JywaKT0wNyUqFyZKTUk+Tj5OV0lJQFA8PVM2GylIS0Y7Tz5OWT5QRjk2FyZKTUk+Tj5OV0c4RD84Gik+Uz9XTklDNxspP1FAWTtGO0NDST83GSpCR0xLVjxNSVFMQEw1KxcmTkM7SERUSU1YTElGOBopT0g3KhkmO00sNxooTU9GTUBEP1pRP0U+SUU+QEQ7Qj9PS0c3GChASllNT0hNREc9Nmtpb2AaKUtATk1LRUBIQllPTEBMVz04UE04LBooQ0M8Pk80KxspQ0xaPlFHOERDPlk/Rz5MUUlLPD44YFtlbl8YKDtGUUlGSTo/WUFJNC8rKSsyLSksJiosKxoqTkNGQDcpLSkqKy4uMyw0Gic9Rk5IR0k7PVpOQUY8NCwqLykrKystIygoNCwvNCw0JDlG
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427230983.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81427230983.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsm2.tmp\rbc.dll
- %TEMP%\rc66.cfcabfibcdg
- %TEMP%\cfcabfibcdg.zip
- %TEMP%\rc66.exe
- %TEMP%\nsm2.tmp\nsisunz.dll
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- <SYSTEM32>\PerfStringBackup.TMP
- %TEMP%\tmp5.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\rc66.exe в %TEMP%\cfcabfibcdg.exe