WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
del
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
/f /s /q "C:\Users\test22\AppData\Local\Temp\pcad1.exe"
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
Deleted file - C:\Users\test22\AppData\Local\Temp\pcad1.exe
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
if
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
exist "C:\Users\test22\AppData\Local\Temp\pcad1.exe"
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
goto
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
Repeat
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
del
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
/s /q "mkill.bat"
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
Deleted file - C:\Users\test22\AppData\Local\Temp\mkill.bat
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
The batch file cannot be found.
console_handle:
0x0000000b
|
1
|
1 |
0
|