Техническая информация
- '%TEMP%\cbicabfhhcbh.exe' 9-9-3-6-8-6-6-8-1-4-3 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81431592925.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81431592925.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81431592925.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsr2.tmp\crw.dll
- %TEMP%\rc62.cbicabfhhcbh
- %TEMP%\cbicabfhhcbh.zip
- %TEMP%\rc62.exe
- %TEMP%\nsr2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81431592925.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\rc62.exe в %TEMP%\cbicabfhhcbh.exe