Техническая информация
- '%TEMP%\dbccabfiicde.exe' 9-1-9-9-1-0-5-8-1-4-1 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81428081427.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81428081427.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81428081427.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nso2.tmp\fccrz.dll
- %TEMP%\zz49.dbccabfiicde
- %TEMP%\dbccabfiicde.zip
- %TEMP%\zz49.exe
- %TEMP%\nso2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81428081427.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\zz49.exe в %TEMP%\dbccabfiicde.exe