Техническая информация
- '%TEMP%\bbgcabfddcdd.exe' 7-2-6-1-9-9-7-8-3-1-2 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81428539466.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81428539466.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81428539466.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nse2.tmp\you.dll
- %TEMP%\insHv18.bbgcabfddcdd
- %TEMP%\bbgcabfddcdd.zip
- %TEMP%\insHv18.exe
- %TEMP%\nse2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81428539466.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\insHv18.exe в %TEMP%\bbgcabfddcdd.exe