Техническая информация
- '%TEMP%\dbdcabfebbia.exe' 0-7-4-9-1-3-1-5-5-9-0 L0lFOzwwLy0tFy9TTj5HSEE8KxsmTkVNU0ZRSEg/OCcgLz1FSlNGQzgtJzI5MBwmQkZDOCsXL1BLSztUQFNaRDs9MS81Kx8sUkBNTUVSWFFJSzpnb29nOi8ob1xxcy1vY1wtYWlsJGNec1wpYG5maBwmQklIPkZARD1wLUEzSDFJL01VTi9PSk5GRi5MSlFGKk8XLkEwOC4tNTQuLhcuQTE4KCggLz0vNCwuHyo/Kz0tKhwmQzI8KCwXL1BLSztUQFNaS0lJVjo/UDwdLktNRkRVPFBWRFJLPDgXL1BLSztUQFNaSThNRTYcJkRVRFpQSUw9GSs8V0JePkg7TElHQTQfLEdKTktfQktLTlJCUTgtFy9UQT1FSlZOUFpMUkw2HCZVSjwtGyZEUyo5Fy5PVElPQE1FWFM8S0BOSEBATUFAQUxRSTwbKkBTX0tRRVNGTEA4a3J1XhwmUUJTUE1FSU5AW0xSQlFaPzhZUzYuFy5FSD9ATz0xGStAUlxDVEk4TUk8WzxNQFFUS0tFRDZiWGtwZBsqO09XR0hGQEFeREs0NS4qMCgtNi8pLC8gL01FREQ6MC8tLTIyKTUwMh0uP0pOTkxIPTteUUhIQDQzLyovJjEtMDAlKzoyMjYsMidASA==
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81431751629.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81431751629.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsn2.tmp\crfiu.dll
- %TEMP%\zz49.dbdcabfebbia
- %TEMP%\dbdcabfebbia.zip
- %TEMP%\zz49.exe
- %TEMP%\nsn2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\tmp3.tmp
- %TEMP%\zz49.exe в %TEMP%\dbdcabfebbia.exe