Техническая информация
- '%TEMP%\efcabfigcf.exe' 9-8-8-3-3-4-3-2-1-6-2 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81428670753.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81428670753.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81428670753.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsb2.tmp\trxds.dll
- %TEMP%\1428184030.efcabfigcf
- %TEMP%\efcabfigcf.zip
- %TEMP%\1428184030.exe
- %TEMP%\nsb2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81428670753.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\1428184030.exe в %TEMP%\efcabfigcf.exe