Техническая информация
- '%TEMP%\beddabjhdd.exe' 8]3]9]6]4]9]3]0]3]7]6 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433552162.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433552162.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81433552162.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nst2.tmp\pnpydix.dll
- %TEMP%\beddabjhdd.fdbcabfbddfi
- %TEMP%\fdbcabfbddfi.zip
- %TEMP%\beddabjhdd.exe
- %TEMP%\nst2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81433552162.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- ClassName: '#32770' WindowName: ''