Техническая информация
- '%TEMP%\eicabfiabfa.exe' 4-6-2-4-8-2-4-3-8-8-0 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81429337046.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81429337046.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81429337046.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsv2.tmp\kdlqu.dll
- %TEMP%\1428505280.eicabfiabfa
- %TEMP%\eicabfiabfa.zip
- %TEMP%\1428505280.exe
- %TEMP%\nsv2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81429337046.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\1428505280.exe в %TEMP%\eicabfiabfa.exe