Техническая информация
- '%TEMP%\beddbgabcc.exe' 1\5\4\7\7\3\5\3\6\0\1 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433174886.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81433174886.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsi2.tmp\dqdvkdf.dll
- %TEMP%\beddbgabcc.gbcabfbccbce
- %TEMP%\gbcabfbccbce.zip
- %TEMP%\beddbgabcc.exe
- %TEMP%\nsi2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\tmp3.tmp
- ClassName: '#32770' WindowName: ''