4663 1 0 12800 0 0x8020000000000000 67326 Security recallrecall S-1-5-21-1862209764-3797049739-4193395240-500 victim recallrecall 0x9d05b Security File C:\Users\victim\AppData\Local\CoreAIPlatform.00\UKP\{677CFAE2-9CA7-44AB-AAD8-1DF07797DDB2}\ImageStore\78b3766b-78b0-42c3-911e-b84b12b4a183 0x248 %%4416
0x1 0x2414 C:\Users\victim\AppData\Local\Programs\Python\Python312\python.exe S:AI
4688 2 0 13312 0 0x8020000000000000 4533529 Security DC01.snapattack.labs S-1-5-21-1720375312-3826971191-370251595-1105 domainadmin snapattack 0x419ec4d 0x2b84 C:\ProgramData\luldr\luldr\sqluldr.exe %%1936 0x994 C:\ProgramData\luldr\luldr\sqluldr.exe user=SYSTEM@localhost:1521/orcl charset=utf8 safe=yes head=yes text=csv rows=50000000 batch=yes query=“select * from employees” file=output.csv && echo “snapattack” >> output.csv S-1-0-0 - - 0x0 C:\Windows\System32\rundll32.exe S-1-16-12288
4663 1 0 12800 0 0x8020000000000000 67326 Security recallrecall S-1-5-21-1862209764-3797049739-4193395240-500 victim recallrecall 0x9d05b Security File C:\Users\victim\AppData\Local\CoreAIPlatform.00\UKP\{677CFAE2-9CA7-44AB-AAD8-1DF07797DDB2}\ImageStore\78b3766b-78b0-42c3-911e-b84b12b4a183 0x248 %%4416
0x1 0x2414 C:\Users\victim\AppData\Local\Programs\Python\Python312\python.exe S:AI
4688 2 0 13312 0 0x8020000000000000 4533529 Security DC01.snapattack.labs S-1-5-21-1720375312-3826971191-370251595-1105 domainadmin snapattack 0x419ec4d 0x2b84 C:\ProgramData\luldr\luldr\sqluldr.exe %%1936 0x994 C:\ProgramData\luldr\luldr\sqluldr.exe user=SYSTEM@localhost:1521/orcl charset=utf8 safe=yes head=yes text=csv rows=50000000 batch=yes query=“select * from employees” file=output.csv && echo “snapattack” >> output.csv S-1-0-0 - - 0x0 C:\Windows\System32\rundll32.exe S-1-16-12288