Техническая информация
- '%TEMP%\1432540580.exe' 4]3]8]2]8]6]9]1]4]6]3 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433110502.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433110502.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81433110502.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsw2.tmp\oyjjhod.dll
- %TEMP%\1432540580.fcfcabfbdjccf
- %TEMP%\fcfcabfbdjccf.zip
- %TEMP%\1432540580.exe
- %TEMP%\nsw2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81433110502.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- ClassName: '#32770' WindowName: ''