Техническая информация
- '%TEMP%\bedfcjifca.exe' 0|8|8|1|7|5|1|2|4|6|2 L0hBQzYsODEyLR4vS01BSURDOywaLU49TFZITUpHQDcvJSoob2tqY3NfbmxhZV08S2Boa11hYyAnPEhMT0hCOSw1NykqHyg+SEI5Kh4vSEpOPVBCUltDQj0qLjgtLh8tTz9QVj1KXk5NSztkbnJwMicubG11LEA/UUslTE5JKEB...
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81435325225.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81435325225.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81435325225.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nss2.tmp\idtrrug.dll
- %TEMP%\bedfcjifca.acfij
- %TEMP%\acfij.zip
- %TEMP%\bedfcjifca.exe
- %TEMP%\nss2.tmp\ZipDLL.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81435325225.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- ClassName: '#32770' WindowName: ''