Trace
21/2/2020 - 19:45:46.66 8
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Wow6432Node\Microsoft\RFC1156Age nt\CurrentVersion\Parameters
TrapPollTim eMilliSecs
21/2/2020 - 19:45:47.55 9
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{R7C0DB87 2A3F777C0 }
21/2/2020 - 19:45:47.55 9
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{K7C0DB87 2A3F777C0 }
21/2/2020 - 19:45:47.55 9
D el et e
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13
397-5A48-1675-C705-EF936762E65A} 0
21/2/2020 - 19:45:47.55 9
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}
21/2/2020 - 19:45:47.55 9
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\InprocServer32
21/2/2020 - 19:45:47.55 9
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\InprocServer32
ThreadingM odel
21/2/2020 - 19:45:47.55 9
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\MiscStatus
21/2/2020 - 19:45:47.55 9
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\MiscStatus\1
21/2/2020 - 19:45:47.55 9
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\ProgID
21/2/2020 - 19:45:47.57 5
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\ToolboxBitmap32
1
21/2/2020 - 19:45:47.57 5
Wr ite
4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\TypeLib
21/2/2020 - 19:45:47.57 5
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\Version
21/2/2020 - 19:45:47.57 5
Wr ite
1 4 8 0
C:\mal ware.e xe
\REGISTRY\MACHINE\SOFTWARE\Classes\Wow6432Node\CLSID\{C9B13 397-5A48-1675-C705-EF936762E65A}\VersionIndependentProgID
21/2/2020 - 19:45:47.65 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:45:47.65 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:45:47.71 5
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:45:47.71 5
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:45:47.98 1
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:45:47.98 1
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:46:2.918
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:46:2.918
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 1
C:\mal
19:46:18.90 3
Wr ite
4 8 0
ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:46:18.90 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:46:34.93 4
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:46:34.93 4
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:46:49.90
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap
ProxyBypas s
21/2/2020 - 19:46:49.90
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap
IntranetNa me
21/2/2020 - 19:46:49.90
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap
UNCAsIntra net
21/2/2020 - 19:46:49.90
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo
neMap AutoDetect
21/2/2020 - 19:46:49.90
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap
ProxyBypas s
21/2/2020 - 19:46:49.90
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap
IntranetNa me
21/2/2020 - 19:46:49.90
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo neMap
UNCAsIntra net
21/2/2020 - Wr 1
4 C:\mal
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Zo
19:46:49.90 ite 8 0
ware.e xe
neMap AutoDetect
21/2/2020 - 19:46:49.90
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings ProxyEnable
21/2/2020 - 19:46:49.90
D el et e
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings ProxyServer
21/2/2020 - 19:46:49.90
D el et e
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings ProxyOverri de
21/2/2020 - 19:46:49.90
D el et e
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings AutoConfig URL
21/2/2020 - 19:46:49.90
D el et e
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings AutoDetect
21/2/2020 - 19:46:49.90
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Co nnections
SavedLegac ySettings
21/2/2020 - 19:46:49.13 7
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0
\Cache\Content CachePrefix
21/2/2020 - 19:46:49.13 7
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0
\Cache\Cookies CachePrefix
21/2/2020 - 19:46:49.13 7
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\5.0
\Cache\History CachePrefix
21/2/2020 - 19:46:49.43 4
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDecisi onReason
21/2/2020 - 19:46:49.43 Wr
1
4 C:\mal
ware.e HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp WpadDecisi
4 ite 8 0
xe ad\52-54-00-83-08-f3 onTime
21/2/2020 - 19:46:49.43 4
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDecisi on
21/2/2020 - 19:46:49.43 4
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDetect edUrl
21/2/2020 - 19:46:49.99 7
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:46:49.99 7
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:46:50.79 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}
WpadDecisi onReason
21/2/2020 - 19:46:50.79 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}
WpadDecisi onTime
21/2/2020 - 19:46:50.79 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}
WpadDecisi on
21/2/2020 - 19:46:50.79 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}
WpadNetwo rkName
21/2/2020 - 19:46:50.79 3
D el et e
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\{D8C667F4-C62D-460A-82E2-EC8687C3DC60}
WpadDetect edUrl
21/2/2020 - 19:46:50.79 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDecisi onReason
21/2/2020 - 19:46:50.79 Wr
ite 1 4 8
C:\mal
ware.e HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDecisi onTime
3 0 xe
21/2/2020 - 19:46:50.79 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDecisi on
21/2/2020 - 19:46:50.79 3
D el et e
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDetect edUrl
21/2/2020 - 19:46:50.79 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDecisi onReason
21/2/2020 - 19:46:50.79 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDecisi onTime
21/2/2020 - 19:46:50.79 3
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDecisi on
21/2/2020 - 19:46:50.79 3
D el et e
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Wp ad\52-54-00-83-08-f3
WpadDetect edUrl
21/2/2020 - 19:47:5.950
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:47:5.950
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:47:20.96 5
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:47:20.96 5
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:47:36.93 4
Wr ite
1 4 8
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
0
21/2/2020 - 19:47:36.93 4
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:47:51.95 0
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:47:51.95 0
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:48:7.965
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:48:7.965
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:48:23.96 5
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:48:23.96 5
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:48:39.93 4
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:48:39.93 4
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }
21/2/2020 - 19:48:53.80 9
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses {I5AA4E182
4BF17FDE}
21/2/2020 - 19:48:53.80 9
Wr ite
1 4 8 0
C:\mal ware.e xe
HKCU\Software\Licenses
{05AA4E18 24BF17FDE }