Техническая информация
- '%TEMP%\bedddjhheb.exe' 0!0!9!1!3!8!7!4!8!2!5 L1BAQzopMjEtHipTVTlPRjw2LBgtSUVUTk5PQ0JANS4bL0RAUlFBPTkoHipDSTs8LRgoTEpNP1VDS15GPDYsGC1ORVJNRE9XTk5EO2N0dGc5LCdsbm4sP0VTQixRR0kpOU5LLklFRUwYKD9ERz5LSTs8HSc9LTUrLCAvOzE6JSocJ0IuPS0oHyw8LTklLxsvRCw8KikZK0hQSkRVOlNcSEtFTj8+WT0XLk1KSEBNQU9fRUxLPjUZK0hQSkRVOlNcRjpJPTsbL0VPRFxNS0g1HipFWDxeQEU9SEFMQD0gJkdMS01bOlBKV1M8UToqGStMRjxOS1BOUldOTkQ7Gy9WRDwvGChASy84IC9JVEtMQkk9XVJFTDpOSj1CSTlFQFVSQzwdJ0JPV1BQTlRATEI1bW5tYxsvUjxTUkpHRUZFWlVTPFFcPDpVSzstIC8/SEE9UTkpHipJU1ZDVkY6SUFBWkVOOlFWSE1BPDthYWxqZB0nPUtPTEdPQTteRkg2MSYwMy4xKzgrLi4cJ1JETUU0MDErLDAoMSs4NxcuQUdQSkRNPERfS0hKPTYyJzIqMjAoNCcvMy8pOC03KjhM
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433415303.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433415303.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81433415303.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsg2.tmp\yqofzuz.dll
- %TEMP%\bedddjhheb.gecabfbebfd
- %TEMP%\gecabfbebfd.zip
- %TEMP%\bedddjhheb.exe
- %TEMP%\nsg2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81433415303.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- ClassName: '#32770' WindowName: ''