Техническая информация
- '%TEMP%\bfcabfffdc.exe' 4-1-2-0-8-3-2-4-4-8-1 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427248926.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427248926.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81427248926.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsq2.tmp\kkss.dll
- %TEMP%\insHv40.bfcabfffdc
- %TEMP%\bfcabfffdc.zip
- %TEMP%\insHv40.exe
- %TEMP%\nsq2.tmp\nsisunz.dll
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81427248926.txt
- %TEMP%\insHv40.bfcabfffdc
- %TEMP%\bfcabfffdc.zip
- %TEMP%\tmp3.tmp
- %TEMP%\insHv40.exe в %TEMP%\bfcabfffdc.exe