Техническая информация
- '%TEMP%\bedchejhcc.exe' 1*6*9*3*2*6*0*6*7*4*4 LkpAQTsrMy4xLRwuTUw/TkNENykcK00/S1RNTEtDPTktHyk7RlFOST42LTUzLCgdLT1JPjYsHC5KSUxCT0NOWEVAPCsvMjYuIClMQU5VP0lcU0xMN2FwcG80JixxbHYoPUFPSidLTE4nQUpJKkVNQEYdLT1MQzxHRUM3FyxCKz0rKi40MRomQTA3LSsZK0AyNyQuHilELjYpLR8pOzI7JzEaKExOTj5MQFJZUExCUj1CUzQdLUpSST1RP1NZPFJKOz0aKExOTj5MQFJZTjtGQTlgTmxfYx8yKjxdcGJiXG8jLDAtJzQqNjMsMh4pRVI+W1FRRjReUm9iXx4uLEJba2BmX3IfKywpJCwnQW1xbmZoXWAfKTxVQ1lDRz1IRU0/NB0tQk9NTVs+UUlOUENMPSoZK1BHO0VIV0lVWU5OSDwaJlNLNzIaKEBPMDcXLFBPTk5CSUFeUTxJQUlNP0JJPUY/TE9KNyApQk9bUU9FUUdHRTdtbnFkGiZPQ05VTEdFSkZZTFBDTF8+OlVPPCwXLEZDRD9ROS0fKUBQXT5ZSDpJRUJZPEtBTFlKTUFAPGBYaXFfICk9S1NNRkY+QllJSjYtLjcoKDYwKDcwJy0zNhomUUdHRTcqMC8xMSwwMC81GihAS1ZIQ0w/Pl9OQklBPC8mLzUpMioqMSY2NCctOC81JElJ
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433687404.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81433687404.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81433687404.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsm2.tmp\icdnaeo.dll
- %TEMP%\bedchejhcc.fchcabfbccfd
- %TEMP%\fchcabfbccfd.zip
- %TEMP%\bedchejhcc.exe
- %TEMP%\nsm2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81433687404.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- ClassName: '#32770' WindowName: ''