Техническая информация
- '%TEMP%\beddagcjec.exe' 4!0!5!7!3!4!6!4!1!1!2 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433547481.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433547481.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81433547481.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsp2.tmp\gcifgrz.dll
- %TEMP%\beddagcjec.fdbcabfbeccec
- %TEMP%\fdbcabfbeccec.zip
- %TEMP%\beddagcjec.exe
- %TEMP%\nsp2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81433547481.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- ClassName: '#32770' WindowName: ''