Техническая информация
- '%TEMP%\bedcjbbhci.exe' 1]3]4]3]5]6]0]7]2]9]0 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433024224.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433024224.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81433024224.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsh2.tmp\brrtdap.dll
- %TEMP%\bedcjbbhci.fcjcabfbcibad
- %TEMP%\fcjcabfbcibad.zip
- %TEMP%\bedcjbbhci.exe
- %TEMP%\nsh2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81433024224.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- ClassName: '#32770' WindowName: ''