Техническая информация
- '%TEMP%\edcabfbdgih.exe' 9-2-0-1-6-1-3-4-2-2-3 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81430395628.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81430395628.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsg2.tmp\bxtxs.dll
- %TEMP%\1428094911.edcabfbdgih
- %TEMP%\edcabfbdgih.zip
- %TEMP%\1428094911.exe
- %TEMP%\nsg2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\1428094911.exe в %TEMP%\edcabfbdgih.exe