Техническая информация
- '%TEMP%\bedebecjcd.exe' 2!0!2!5!4!0!7!9!8!7!8 LVBHPzkxMSorLRgtU1M9TEk9NC1bKS9iMy4zLS8uLDElMjFfLCk5XDBaJik0OTAwMTRcLVsqKx4vTEBQV0hJQ0I8OzAeKkBJTEtBPTUvOTUyHC88QDw2KB4vTk1LRE46TFhBQj0vMTU0GSZLPkpURVBaUVJFNGBtbG46LSpvcm8...
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81434285484.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81434285484.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81434285484.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nsj2.tmp\atbzgfy.dll
- %TEMP%\bedebecjcd.gbccabfbcdcab
- %TEMP%\gbccabfbcdcab.zip
- %TEMP%\bedebecjcd.exe
- %TEMP%\nsj2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81434285484.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- ClassName: '#32770' WindowName: ''