Техническая информация
- '%TEMP%\bdbcabfhjbg.exe' 7-8-5-9-0-4-6-2-8-6-9 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
- '<SYSTEM32>\wbem\wmiadap.exe' /R /T
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427270113.txt bios get serialnumber
- %TEMP%\insHv64.exe
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\nsz2.tmp\nsisunz.dll
- %TEMP%\insHv64.bdbcabfhjbg
- %TEMP%\nsz2.tmp\ob01.dll
- %TEMP%\bdbcabfhjbg.zip
- <SYSTEM32>\PerfStringBackup.TMP
- <SYSTEM32>\wbem\Performance\WmiApRpl.ini
- %TEMP%\tmp3.tmp
- %TEMP%\insHv64.exe в %TEMP%\bdbcabfhjbg.exe