Техническая информация
- '%TEMP%\cccabfechg.exe' 4-2-8-0-9-2-4-5-0-5-3 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427374926.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81427374926.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81427374926.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsj2.tmp\7tm.dll
- %TEMP%\rc27.cccabfechg
- %TEMP%\cccabfechg.zip
- %TEMP%\rc27.exe
- %TEMP%\nsj2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81427374926.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\rc27.exe в %TEMP%\cccabfechg.exe