WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
PING
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
127.0.0.1 -n 2
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
start
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
"" "C:\Users\test22\AppData\Roaming\win.exe"
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\test22\AppData\Local\Temp>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
del
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
"C:\Users\test22\AppData\Local\Temp\install.bat"
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
The batch file cannot be found.
console_handle:
0x0000000b
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Pinging 127.0.0.1
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
with 32 bytes of data:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
TTL=128
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Reply from 127.0.0.1:
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
bytes=32
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
time<1ms
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
TTL=128
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleA
|
buffer:
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
console_handle:
0x00000007
|
1
|
1 |
0
|