Техническая информация
- '%TEMP%\dbacabfhdjc.exe' 2-0-1-4-4-7-6-5-0-6-1 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
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81428663788.txt bios get version
- '<SYSTEM32>\wbem\wmic.exe' /output:%TEMP%\81428663788.txt bios get serialnumber
- <SYSTEM32>\wbem\AutoRecover\C8463ECBE33BC240263A0B094E46D510.mof
- %TEMP%\tmp4.tmp
- %TEMP%\tmp5.tmp
- %TEMP%\81428663788.txt
- <SYSTEM32>\wbem\AutoRecover\23BDE61F1F4FACE17E9B0C01F2A1FD9B.mof
- %TEMP%\tmp3.tmp
- %TEMP%\nss2.tmp\fquyh.dll
- %TEMP%\rr49.dbacabfhdjc
- %TEMP%\dbacabfhdjc.zip
- %TEMP%\rr49.exe
- %TEMP%\nss2.tmp\nsisunz.dll
- %TEMP%\tmp5.tmp
- %TEMP%\81428663788.txt
- %TEMP%\tmp3.tmp
- %TEMP%\tmp4.tmp
- %TEMP%\rr49.exe в %TEMP%\dbacabfhdjc.exe