• Nenhum resultado encontrado

Registry

No documento Report #7295 (páginas 36-44)

Trace

21/2/2020 - 19:45:46.66 8

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\RFC1156Age nt\CurrentVersion\Parameters

TrapPollTim eMilliSecs

21/2/2020 - 19:45:47.55 9

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{R7C0DB87 2A3F777C0 }

21/2/2020 - 19:45:47.55 9

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{K7C0DB87 2A3F777C0 }

21/2/2020 - 19:45:47.55 9

D el et e

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13

397-5A48-1675-C705-EF936762E65A} 0

21/2/2020 - 19:45:47.55 9

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}

21/2/2020 - 19:45:47.55 9

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\InprocServer32

21/2/2020 - 19:45:47.55 9

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\InprocServer32

ThreadingM odel

21/2/2020 - 19:45:47.55 9

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\MiscStatus

21/2/2020 - 19:45:47.55 9

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\MiscStatus\1

21/2/2020 - 19:45:47.55 9

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\ProgID

21/2/2020 - 19:45:47.57 5

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\ToolboxBitmap32

1

21/2/2020 - 19:45:47.57 5

Wr ite

4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\TypeLib

21/2/2020 - 19:45:47.57 5

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\Version

21/2/2020 - 19:45:47.57 5

Wr ite

1 4 8 0

C:\mal ware.e xe

\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\VersionIndependentProgID

21/2/2020 - 19:45:47.65 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:45:47.65 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:45:47.71 5

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:45:47.71 5

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:45:47.98 1

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:45:47.98 1

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:46:2.918

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:46:2.918

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 1

C:\mal

19:46:18.90 3

Wr ite

4 8 0

ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:46:18.90 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:46:34.93 4

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:46:34.93 4

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:46:49.90

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap

ProxyBypas s

21/2/2020 - 19:46:49.90

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap

IntranetNa me

21/2/2020 - 19:46:49.90

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap

UNCAsIntra net

21/2/2020 - 19:46:49.90

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo

neMap AutoDetect

21/2/2020 - 19:46:49.90

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap

ProxyBypas s

21/2/2020 - 19:46:49.90

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap

IntranetNa me

21/2/2020 - 19:46:49.90

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap

UNCAsIntra net

21/2/2020 - Wr 1

4 C:\mal

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo

19:46:49.90 ite 8 0

ware.e xe

neMap AutoDetect

21/2/2020 - 19:46:49.90

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings ProxyEnable

21/2/2020 - 19:46:49.90

D el et e

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings ProxyServer

21/2/2020 - 19:46:49.90

D el et e

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings ProxyOverri de

21/2/2020 - 19:46:49.90

D el et e

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings AutoConfig URL

21/2/2020 - 19:46:49.90

D el et e

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings AutoDetect

21/2/2020 - 19:46:49.90

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Co nnections

SavedLegac ySettings

21/2/2020 - 19:46:49.13 7

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0

\Cache\Content CachePrefix

21/2/2020 - 19:46:49.13 7

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0

\Cache\Cookies CachePrefix

21/2/2020 - 19:46:49.13 7

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0

\Cache\History CachePrefix

21/2/2020 - 19:46:49.43 4

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDecisi onReason

21/2/2020 - 19:46:49.43 Wr

1

4 C:\mal

ware.e HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp WpadDecisi

4 ite 8 0

xe ad\52-54-00-83-08-f3 onTime

21/2/2020 - 19:46:49.43 4

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDecisi on

21/2/2020 - 19:46:49.43 4

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDetect edUrl

21/2/2020 - 19:46:49.99 7

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:46:49.99 7

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:46:50.79 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}

WpadDecisi onReason

21/2/2020 - 19:46:50.79 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}

WpadDecisi onTime

21/2/2020 - 19:46:50.79 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}

WpadDecisi on

21/2/2020 - 19:46:50.79 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}

WpadNetwo rkName

21/2/2020 - 19:46:50.79 3

D el et e

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}

WpadDetect edUrl

21/2/2020 - 19:46:50.79 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDecisi onReason

21/2/2020 - 19:46:50.79 Wr

ite 1 4 8

C:\mal

ware.e HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDecisi onTime

3 0 xe

21/2/2020 - 19:46:50.79 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDecisi on

21/2/2020 - 19:46:50.79 3

D el et e

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDetect edUrl

21/2/2020 - 19:46:50.79 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDecisi onReason

21/2/2020 - 19:46:50.79 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDecisi onTime

21/2/2020 - 19:46:50.79 3

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDecisi on

21/2/2020 - 19:46:50.79 3

D el et e

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3

WpadDetect edUrl

21/2/2020 - 19:47:5.950

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:47:5.950

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:47:20.96 5

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:47:20.96 5

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:47:36.93 4

Wr ite

1 4 8

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

0

21/2/2020 - 19:47:36.93 4

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:47:51.95 0

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:47:51.95 0

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:48:7.965

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:48:7.965

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:48:23.96 5

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:48:23.96 5

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:48:39.93 4

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:48:39.93 4

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

21/2/2020 - 19:48:53.80 9

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses {I5AA4E182

4BF17FDE}

21/2/2020 - 19:48:53.80 9

Wr ite

1 4 8 0

C:\mal ware.e xe

HKCU\Software\Licenses

{05AA4E18 24BF17FDE }

No documento Report #7295 (páginas 36-44)

Documentos relacionados