| Time & API |
Arguments |
Status |
Return |
Repeated |
1620758565.099501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.115501
WriteConsoleW
|
buffer:
del
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.115501
WriteConsoleW
|
buffer:
"C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.224501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.271501
WriteConsoleW
|
buffer:
拒绝访问。
console_handle:
0x0000000b
|
success
|
1 |
0
|
1620758565.287501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.287501
WriteConsoleW
|
buffer:
if
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.287501
WriteConsoleW
|
buffer:
exist "C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.287501
WriteConsoleW
|
buffer:
goto
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.287501
WriteConsoleW
|
buffer:
ktk
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.318501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.318501
WriteConsoleW
|
buffer:
del
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.318501
WriteConsoleW
|
buffer:
"C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.349501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.349501
WriteConsoleW
|
buffer:
拒绝访问。
console_handle:
0x0000000b
|
success
|
1 |
0
|
1620758565.365501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.365501
WriteConsoleW
|
buffer:
if
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.365501
WriteConsoleW
|
buffer:
exist "C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.365501
WriteConsoleW
|
buffer:
goto
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.365501
WriteConsoleW
|
buffer:
ktk
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.396501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.396501
WriteConsoleW
|
buffer:
del
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.396501
WriteConsoleW
|
buffer:
"C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.458501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.458501
WriteConsoleW
|
buffer:
拒绝访问。
console_handle:
0x0000000b
|
success
|
1 |
0
|
1620758565.505501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.505501
WriteConsoleW
|
buffer:
if
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.505501
WriteConsoleW
|
buffer:
exist "C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.521501
WriteConsoleW
|
buffer:
goto
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.521501
WriteConsoleW
|
buffer:
ktk
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.568501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.568501
WriteConsoleW
|
buffer:
del
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.568501
WriteConsoleW
|
buffer:
"C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.630501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.630501
WriteConsoleW
|
buffer:
拒绝访问。
console_handle:
0x0000000b
|
success
|
1 |
0
|
1620758565.646501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.646501
WriteConsoleW
|
buffer:
if
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.646501
WriteConsoleW
|
buffer:
exist "C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.662501
WriteConsoleW
|
buffer:
goto
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.662501
WriteConsoleW
|
buffer:
ktk
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.677501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.677501
WriteConsoleW
|
buffer:
del
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.677501
WriteConsoleW
|
buffer:
"C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.724501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.724501
WriteConsoleW
|
buffer:
拒绝访问。
console_handle:
0x0000000b
|
success
|
1 |
0
|
1620758565.740501
WriteConsoleW
|
buffer:
C:\Users\Administrator.Oskar-PC\AppData\Local\Temp>
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.740501
WriteConsoleW
|
buffer:
if
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.740501
WriteConsoleW
|
buffer:
exist "C:\Users\Administrator.Oskar-PC\AppData\Roaming\nmsp3\sedgf.exe"
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.740501
WriteConsoleW
|
buffer:
goto
console_handle:
0x00000007
|
success
|
1 |
0
|
1620758565.755501
WriteConsoleW
|
buffer:
ktk
console_handle:
0x00000007
|
success
|
1 |
0
|