Report #11710 check_circle

  • Creation Date: Sept. 22, 2020, 5:39 a.m.
  • Last Update: Sept. 22, 2020, 5:43 a.m.
  • File: evader.exe
  • Results:
Binary
DLL
False cancel
Size
795.00KB
trid
61.7% Win64 Executable
14.7% Win32 Dynamic Link Library
10.0% Win32 Executable
4.5% OS/2 Executable
4.4% Generic Win/DOS Executable
type
PE
wordsize
64
Subsystem
Windows CLI
Hashes
md5
c15dfa13c26e2a7b17540a9f3c670ae0
sha1
931541e3c370c0ba010301cafd29b9997c5ab509
crc32
0x4c0bac90
sha224
86d68eea8bdc66ae00c09e2445f4afde1248d22b005a1c33cdc43936
sha256
08601ba5aea7dd4e5da36604e690f5463577acd15bb86c2d5c67eeb885475e30
sha384
30a4cab7a5771285afd55dbc9b535ff8495fcd78787db517a611bd8e7b9ba742dd36f8db9f728a34a55a0a77d15783f5
sha512
9efba69f501e0667058d4b8a1332244c5372ea88177ea755ce98ca76a57459f62946542060bfe422b5bb176faa356f814339d656c2e495e606bcfcde3abe10a6
ssdeep
12288:ZQxK33heNnvkxmaaeLawFMFnu93H7DMxFQGcVWaCuJGr9ocY:ZXnhUv6JaAj37DMkZWZuJGr9
Community
Google
False cancel
HashLib
False cancel
YARA
Matches
domain, Delphi_Copy, anti_dbg, Delphi_FormShow, screenshot, HasDebugData, HasRichSignature, contentis_base64, keylogger, IsConsole, win_hook, win_registry, IsPE64, Delphi_CompareCall, Delphi_StrToInt, win_files_operation, IsPacked, Microsoft_Visual_Cpp_80_DLL, Delphi_DecodeDate, Big_Numbers2, Borland

Suspicious
True check_circle

Strings
List
c:\Users\Win\Documents\Visual Studio 2012\Projects\Dropper\x64\Release\Dropper.pdb
t.Ht
TabFont.Name
TabFont.Style
Font.Style
Font.Name
%s.Seek not implemented$Operation not allowed on sorted list$%s not in a class registration group
L7.HK
System\CurrentControlSet\Control\Keyboard Layouts\%.8x
P.rsrc
SOFTWARE\Borland\Delphi\RTL
Delphi%.8X
Software\Borland\Locales
COMCTL32.dll
Software\Borland\Delphi\Locales
MSVCR110.dll
comctl32.dll
comctl32.dll
comctl32.dll
comctl32.dll
olepro32.dll
comctl32.dll
comctl32.dll
version.dll
WINMM.dll
UxTheme.dll
uxtheme.dll
vcltest3.dll
RdPS
proc.exe
proc.exe
OnIncludeItemSVW
,N}veU5
ControlOfs%.8X%.8X
WndProcPtr%.8X%.8X
TCalDayOfWeek
d3y%o^8aB
PictureH,E
JumpID("","%s")
- Dock zone has no control
TIncludeItemEvent
Apartment
Sub-menu is not in menu
Division by zero
Stage
FullRepaint
aviDeleteFile
TaskbarCreated
August September
bsSizeToolWin
ToolWin
Rebuild
Selected
Include
WeekNumbers
osfw
Too many open files
cbUnchecked cbChecked
Assertion failed
dsSelected
%s (%s, line %d)
F %i+$SR
No help found for %s#No context-sensitive help installed$No topic-based help system installed
Privileged instruction(Exception %s in module %s at %p.
Error reading %s%s%s: %s
I/O error %d
List count out of bounds (%d)
Ancestor for '%s' not found
Cannot assign a %s to a %s
Class %s not found
Property %s does not exist
Resource %s not found
OLE control activation failed*Could not obtain OLE control window handle%License information for %s is invalidPLicense information for %s not found. You cannot use this control in design modeNUnable to retrieve a pointer to a running object registered with OLE for %s/%s
OnDestroy
OnDestroy
ESafecallException
OnHide
OnContextPopup,
UseDockManager$
*ShellAPI
IPersistStream@IA
IE(AL("%s",4),"AL(\"%0:s\",3)","JK(\"%1:s\",\"%0:s\")")
<requestedPrivileges>
__crt_debugger_hook
ssShift
Error setting %s.Count8Listbox (%s) style must be virtual in order to set Count"Unable to find a Table of Contents
ssHotTrack
Error creating window class+Cannot focus a disabled or invisible window!Control '%s' has no parent window
Invalid stream format$''%s'' is not a valid component name
OnDockOver,
ssLeft
ofForceShowHidden
No argument for format '%s'"Variant method calls not supported
Delphi Component
IsProcessorFeaturePresent
"Failed to set tab "%s" at index %d Failed to set object at index %d=This control requires version 4.70 or greater of COMCTL32.DLL
Invalid variant operation%Invalid variant operation (%s%.8x)
TPersistent
TPersistent
OnStartDock(

Foremost
Matches
24.exe, 781 KB
Suspicious
True check_circle
Heuristics
IPs
hasIPs: False cancel
Allowed
Suspicious
hasAllowed: False cancel
hasSuspicious: False cancel

URLs
Allowed
hasURLs: False cancel
Suspicious
hasAllowed: False cancel
hasSuspicious: False cancel

Files
Allowed: "Failed to set tab "%s" at index %d Failed to set object at index %d=This control requires version 4.70 or greater of COMCTL32.DLL, ADVAPI32.dll, SHLWAPI.dll, RPCRT4.dll, OLEAUT32.dll, MAPI32.DLL, user32.dll, SHELL32.dll, uxtheme.dll, MSVCR110.dll, COMCTL32.dll, ole32.dll, imm32.dll, olepro32.dll, gdi32.dll, KERNEL32.dll, WINMM.dll, comdlg32.dll, vcltest3.dll, version.dll
hasFiles: True check_circle
Suspicious
hasAllowed: True check_circle
hasSuspicious: False cancel

Binary
Sizes
RVA
RVA: 16
Suspicious: False cancel
Code
Size: 809472
Suspicious: False cancel
Image
Address: 5368709120
Suspicious: False cancel
Stack
Stack: 4096
Suspicious: False cancel
Headers
Headers: 1024
Suspicious: False cancel
Suspicious: False cancel

Symbols
Number
Number: 0
Suspicious: True check_circle
Pointer
Pointer: 0
Suspicious: True check_circle
Directories
Number: 16
Suspicious: False cancel

Checksum
Value: 0
Suspicous: True check_circle

Sections
Allowed: .text, .rdata, .data, .pdata, .rsrc, .reloc
Suspicious
hasAllowed: True check_circle
hasSections: True check_circle
hasSuspicious: False cancel

Versions
OS
Version: 6
Suspicious: False cancel
Image
Version: True check_circle
Suspicious: 6
Linker
Version: 11.0
Suspicious: False cancel
Subsystem
Version: 6.0
Suspicious: False cancel
Suspicious: False cancel

EntryPoint
Address: 6772
Suspicious: False cancel

Anomalies
Anomalies: The header checksum and the calculated checksum do not match.
hasAnomalies: True check_circle

Libraries
Allowed: advapi32.dll, shlwapi.dll, rpcrt4.dll, oleaut32.dll, mapi32.dll, user32.dll, shell32.dll, uxtheme.dll, comctl32.dll, ole32.dll, imm32.dll, olepro32.dll, gdi32.dll, kernel32.dll, winmm.dll, comdlg32.dll, version.dll
hasLibs: True check_circle
Suspicious: "failed to set tab "%s" at index %d failed to set object at index %d=this control requires version 4.70 or greater of comctl32.dll, msvcr110.dll, vcltest3.dll
hasAllowed: True check_circle
hasSuspicious: True check_circle

Timestamp
Past: False cancel
Valid: True check_circle
Value: 2020-09-22 05:39:26
Future: False cancel

Compilation
Packed: False cancel
Missing: False cancel
Packers
Compiled: True check_circle
Compilers: Microsoft Visual C++ 8.0 (DLL)

Obfuscation
XOR: False cancel
Fuzzing: True check_circle

PEDetector
Matches
12448
Suspicious
True check_circle
Disassembly
hasTricks
False cancel
Tricks
AVclass
injuke
1
VirusTotal
md5
c15dfa13c26e2a7b17540a9f3c670ae0
sha1
931541e3c370c0ba010301cafd29b9997c5ab509
SCANS (DETECTION RATE = 44.12%)
AVG
result: Win32:RATX-gen [Trj]
update: 20200922
version: 18.4.3895.0
detected: True check_circle

CMC
update: 20200922
version: 2.7.2019.1
detected: False cancel

MAX
result: malware (ai score=85)
update: 20200922
version: 2019.9.16.1
detected: True check_circle

APEX
result: Malicious
update: 20200922
version: 6.73
detected: True check_circle

Bkav
update: 20200922
version: 1.3.0.9899
detected: False cancel

K7GW
update: 20200922
version: 11.141.35291
detected: False cancel

ALYac
result: Gen:Variant.Mikey.115311
update: 20200922
version: 1.1.1.5
detected: True check_circle

Avast
result: Win32:RATX-gen [Trj]
update: 20200922
version: 18.4.3895.0
detected: True check_circle

Avira
result: TR/Kryptik.jibwd
update: 20200922
version: 8.3.3.8
detected: True check_circle

Baidu
update: 20190318
version: 1.0.0.2
detected: False cancel

Cynet
update: 20200917
version: 4.0.0.24
detected: False cancel

Cyren
update: 20200922
version: 6.3.0.2
detected: False cancel

DrWeb
result: Trojan.Encoder.30162
update: 20200922
version: 7.0.49.9080
detected: True check_circle

GData
result: Gen:Variant.Mikey.115311
update: 20200922
version: A:25.27102B:27.20255
detected: True check_circle

Panda
update: 20200921
version: 4.6.4.2
detected: False cancel

VBA32
update: 20200921
version: 4.4.1
detected: False cancel

VIPRE
update: 20200922
version: 86874
detected: False cancel

Zoner
update: 20200920
version: 0.0.0.0
detected: False cancel

Comodo
update: 20200921
version: 32832
detected: False cancel

Ikarus
result: Trojan.Win32.Injector
update: 20200921
version: 0.1.5.2
detected: True check_circle

McAfee
update: 20200922
version: 6.0.6.653
detected: False cancel

Rising
result: Trojan.Injector!1.C97E (CLASSIC)
update: 20200922
version: 25.0.0.26
detected: True check_circle

Sophos
update: 20200922
version: 4.98.0
detected: False cancel

Yandex
result: Trojan.Igent.bT23cy.31
update: 20200911
version: 5.5.2.24
detected: True check_circle

Zillya
update: 20200919
version: 2.0.0.4178
detected: False cancel

Acronis
update: 20200917
version: 1.1.1.78
detected: False cancel

Alibaba
update: 20190527
version: 0.3.0.5
detected: False cancel

Arcabit
result: Trojan.Mikey.D1C26F
update: 20200922
version: 1.0.0.881
detected: True check_circle

Cylance
update: 20200922
version: 2.3.1.101
detected: False cancel

Elastic
result: malicious (high confidence)
update: 20200917
version: 4.0.9
detected: True check_circle

FireEye
result: Generic.mg.c15dfa13c26e2a7b
update: 20200922
version: 32.36.1.0
detected: True check_circle

Sangfor
update: 20200814
version: 1.0
detected: False cancel

TACHYON
update: 20200922
version: 2020-09-22.02
detected: False cancel

Tencent
update: 20200922
version: 1.0.0.1
detected: False cancel

ViRobot
update: 20200922
version: 2014.3.20.0
detected: False cancel

Webroot
update: 20200922
version: 1.0.0.403
detected: False cancel

eGambit
update: 20200922
detected: False cancel

Ad-Aware
result: Gen:Variant.Mikey.115311
update: 20200922
version: 3.0.16.117
detected: True check_circle

AegisLab
update: 20200922
version: 4.2
detected: False cancel

Emsisoft
result: Gen:Variant.Mikey.115311 (B)
update: 20200922
version: 2018.12.0.1641
detected: True check_circle

F-Secure
update: 20200922
version: 12.0.86.52
detected: False cancel

Fortinet
result: W64/Kryptik.ERUI!tr
update: 20200922
version: 6.2.142.0
detected: True check_circle

Invincea
update: 20200922
version: 1.0.1.0
detected: False cancel

Jiangmin
result: Trojan.MSIL.qkml
update: 20200921
version: 16.0.100
detected: True check_circle

Kingsoft
update: 20200922
version: 2013.8.14.323
detected: False cancel

Paloalto
update: 20200922
version: 1.0
detected: False cancel

Symantec
update: 20200922
version: 1.12.0.0
detected: False cancel

AhnLab-V3
result: Trojan/Win32.AgentTesla.R350864
update: 20200922
version: 3.18.1.10026
detected: True check_circle

Antiy-AVL
result: Trojan/Win32.Injuke
update: 20200922
version: 3.0.0.1
detected: True check_circle

Kaspersky
result: HEUR:Trojan.Win32.Injuke.gen
update: 20200922
version: 15.0.1.13
detected: True check_circle

MaxSecure
result: Trojan.Malware.74209402.susgen
update: 20200919
version: 1.0.0.1
detected: True check_circle

Microsoft
result: Trojan:Win32/Wacatac.C!ml
update: 20200922
version: 1.1.17400.5
detected: True check_circle

Qihoo-360
update: 20200922
version: 1.0.0.1120
detected: False cancel

ZoneAlarm
result: HEUR:Trojan.Win32.Injuke.gen
update: 20200922
version: 1.0
detected: True check_circle

ESET-NOD32
result: a variant of Win64/Kryptik.CAA
update: 20200922
version: 22029
detected: True check_circle

TrendMicro
update: 20200922
version: 11.0.0.1006
detected: False cancel

BitDefender
result: Gen:Variant.Mikey.115311
update: 20200922
version: 7.2
detected: True check_circle

CrowdStrike
update: 20190702
version: 1.0
detected: False cancel

K7AntiVirus
update: 20200922
version: 11.141.35291
detected: False cancel

SentinelOne
update: 20200724
version: 4.4.0.0
detected: False cancel

Malwarebytes
result: Trojan.MalPack
update: 20200922
version: 3.6.4.335
detected: True check_circle

TotalDefense
update: 20200922
version: 37.1.62.1
detected: False cancel

CAT-QuickHeal
update: 20200922
version: 14.00
detected: False cancel

NANO-Antivirus
result: Trojan.Win32.Injuke.hmkbxp
update: 20200922
version: 1.0.134.25140
detected: True check_circle

BitDefenderTheta
result: Gen:NN.ZelphiF.34254.WGW@amg5CAci
update: 20200918
version: 7.2.37796.0
detected: True check_circle

MicroWorld-eScan
result: Gen:Variant.Mikey.115311
update: 20200922
version: 14.0.409.0
detected: True check_circle

SUPERAntiSpyware
update: 20200918
version: 5.6.0.1032
detected: False cancel

TrendMicro-HouseCall
update: 20200922
version: 10.0.0.1040
detected: False cancel

total
68
sha256
08601ba5aea7dd4e5da36604e690f5463577acd15bb86c2d5c67eeb885475e30
scan_id
08601ba5aea7dd4e5da36604e690f5463577acd15bb86c2d5c67eeb885475e30-1600763970
resource
c15dfa13c26e2a7b17540a9f3c670ae0
positives
30
scan_date
2020-09-22 08:39:30
verbose_msg
Scan finished, information embedded
response_code
1
File
Trace
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.856Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.872Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.887Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.903Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.918Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Unknown2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Open2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:43.934Write2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Windows\System32\apphelp.dll
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Windows\System32\apphelp.dll
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Windows\AppPatch\sysmain.sdb
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Monitor
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\Monitor
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Monitor
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\Monitor
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Monitor
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\Monitor
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Read2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Monitor\ui\SwDRM.dll
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Open2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.122Unknown2476C:\malware.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.137Unknown2476C:\malware.exeC:\Monitor
22/9/2020 - 4:45:44.137Unknown2476C:\malware.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\Prefetch\PROC.EXE-5509F567.pf
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\System32\wow64.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\System32\wow64.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\System32\wow64win.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\System32\wow64win.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\System32\wow64cpu.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\System32\wow64cpu.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\System32\wow64log.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows
22/9/2020 - 4:45:44.137Unknown752C:\Monitor\proc.exeC:\Windows
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Monitor
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\sechost.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\sechost.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Monitor\version.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\version.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\version.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
22/9/2020 - 4:45:44.137Unknown752C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
22/9/2020 - 4:45:44.137Open752C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Monitor\proc.PTB
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Monitor\proc.PTB.DLL
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Monitor\proc.PT
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Monitor\proc.PT.DLL
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\uxtheme.dll
22/9/2020 - 4:45:44.153Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\uxtheme.dll
22/9/2020 - 4:45:44.247Open752C:\Monitor\proc.exeC:\Monitor\dwmapi.dll
22/9/2020 - 4:45:44.247Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\dwmapi.dll
22/9/2020 - 4:45:44.247Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\dwmapi.dll
22/9/2020 - 4:45:44.247Open752C:\Monitor\proc.exeC:\Windows\Fonts\StaticCache.dat
22/9/2020 - 4:45:44.247Read752C:\Monitor\proc.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
22/9/2020 - 4:45:44.247Open752C:\Monitor\proc.exeC:\Monitor\olepro32.dll
22/9/2020 - 4:45:44.247Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\olepro32.dll
22/9/2020 - 4:45:44.247Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\olepro32.dll
22/9/2020 - 4:45:44.309Open752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Unknown752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Open752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Unknown752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Open752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Unknown752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Open752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Open752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Unknown752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Unknown752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\apphelp.dll
22/9/2020 - 4:45:44.309Open752C:\Monitor\proc.exeC:\Windows\SysWOW64\apphelp.dll
22/9/2020 - 4:45:44.309Unknown752C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\Prefetch\PROC.EXE-5509F567.pf
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\System32\wow64.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\System32\wow64.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\System32\wow64win.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\System32\wow64win.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\System32\wow64cpu.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\System32\wow64cpu.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\System32\wow64log.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows
22/9/2020 - 4:45:44.372Unknown532C:\Monitor\proc.exeC:\Windows
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Monitor
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\sechost.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\sechost.dll
22/9/2020 - 4:45:44.372Unknown752C:\Monitor\proc.exeC:\Windows
22/9/2020 - 4:45:44.372Unknown752C:\Monitor\proc.exeC:\Monitor
22/9/2020 - 4:45:44.372Unknown752C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
22/9/2020 - 4:45:44.372Unknown752C:\Monitor\proc.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.372Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
22/9/2020 - 4:45:44.387Open532C:\Monitor\proc.exeC:\Monitor\mscoree.dll
22/9/2020 - 4:45:44.387Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\mscoree.dll
22/9/2020 - 4:45:44.387Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\mscoree.dll
22/9/2020 - 4:45:44.387Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727
22/9/2020 - 4:45:44.387Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727
22/9/2020 - 4:45:44.387Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
22/9/2020 - 4:45:44.387Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorwks.dll
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:44.403Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\msvcr80.dll
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\msvcr80.dll
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc\msvcr80.dll
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\
22/9/2020 - 4:45:44.403Unknown532C:\Monitor\proc.exeC:\
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows
22/9/2020 - 4:45:44.403Unknown532C:\Monitor\proc.exeC:\Windows
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:44.403Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\mscoree.dll.local
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727
22/9/2020 - 4:45:44.403Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\Upgrades.2.0.50727
22/9/2020 - 4:45:44.403Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\Upgrades.2.0.50727
22/9/2020 - 4:45:44.700Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\sxs.dll
22/9/2020 - 4:45:44.700Open532C:\Monitor\proc.exeC:\Monitor\sxs.dll
22/9/2020 - 4:45:44.700Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\sxs.dll
22/9/2020 - 4:45:44.700Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\sxs.dll
22/9/2020 - 4:45:44.700Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\shfolder.dll
22/9/2020 - 4:45:44.700Open532C:\Monitor\proc.exeC:\Monitor\shfolder.dll
22/9/2020 - 4:45:44.700Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\shfolder.dll
22/9/2020 - 4:45:44.700Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\shfolder.dll
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\user32.dll
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\iphlpapi.dll
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Monitor\iphlpapi.dll
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Monitor\WINNSI.DLL
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\winnsi.dll
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\winnsi.dll
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\advapi32.dll
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\Gdiplus.dll
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:45:44.934Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.23407_none_5c02a2f5a011f9be
22/9/2020 - 4:45:44.981Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.23407_none_5c02a2f5a011f9be
22/9/2020 - 4:45:44.981Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.23407_none_5c02a2f5a011f9be
22/9/2020 - 4:45:44.981Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.23407_none_5c02a2f5a011f9be\GdiPlus.dll
22/9/2020 - 4:45:45.28Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.gdiplus_6595b64144ccf1df_1.1.7601.23407_none_5c02a2f5a011f9be\GdiPlus.dll
22/9/2020 - 4:45:45.28Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\ole32.dll
22/9/2020 - 4:45:45.28Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
22/9/2020 - 4:45:45.75Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.75Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
22/9/2020 - 4:45:45.75Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.122Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.168Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.215Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.293Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.340Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dll
22/9/2020 - 4:45:45.340Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.340Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.387Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.434Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:45:45.434Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:45.434Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:45.434Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:45.434Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.434Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.481Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.481Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.528Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.575Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.575Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\diasymreader.dlldiasymreader.dll
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscoree.dll
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsec.dll
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:45.575Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
22/9/2020 - 4:45:45.575Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
22/9/2020 - 4:45:45.575Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Monitor\RichEd20.dll
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\riched20.dll
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\riched20.dll
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Windows\Globalization\Sorting\SortDefault.nls
22/9/2020 - 4:45:45.590Unknown532C:\Monitor\proc.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.config
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:45.590Unknown532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727
22/9/2020 - 4:45:45.590Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727
22/9/2020 - 4:45:45.590Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
22/9/2020 - 4:45:45.590Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.590Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dll
22/9/2020 - 4:45:45.590Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.590Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.637Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.684Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.684Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.731Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.778Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.825Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.872Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.918Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.918Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:45.965Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:46.12Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:46.59Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:46.106Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:46.106Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:46.153Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:46.153Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:46.200Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscordacwks.dllmscordacwks.dll
22/9/2020 - 4:45:46.247Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
22/9/2020 - 4:45:46.247Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
22/9/2020 - 4:45:46.247Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\Culture.dll
22/9/2020 - 4:45:46.247Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:45:46.247Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:46.247Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:46.247Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:46.247Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
22/9/2020 - 4:45:46.293Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
22/9/2020 - 4:45:46.481Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorjit.dll
22/9/2020 - 4:45:46.481Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:45:46.481Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:46.481Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:46.481Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:45:46.481Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll
22/9/2020 - 4:45:46.481Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorrc.dll
22/9/2020 - 4:45:46.575Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
22/9/2020 - 4:45:46.575Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\jsc.exe
22/9/2020 - 4:45:46.575Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.config
22/9/2020 - 4:45:46.575Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:46.575Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:46.575Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:46.575Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:46.575Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:46.575Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:46.575Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.config
22/9/2020 - 4:45:46.575Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\fusion.localgac
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\security.config.cch
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\enterprisesec.config.cch
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Users\Behemot
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Users\Behemot
22/9/2020 - 4:45:46.590Unknown532C:\Monitor\proc.exeC:\Users\Behemot
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
22/9/2020 - 4:45:46.590Unknown532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\CLR Security Config\v2.0.50727.312\security.config.cch
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\index164.dat
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
22/9/2020 - 4:45:46.590Unknown532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.653Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.747Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.793Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.887Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.934Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:46.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.122Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:45:47.168Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:45:47.215Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:45:47.215Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.262Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.309Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.356Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.403Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.450Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.497Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.543Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.637Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.684Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.731Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.918Open532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:47.918Unknown532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:47.918Open532C:\Monitor\proc.exeC:\
22/9/2020 - 4:45:47.918Unknown532C:\Monitor\proc.exeC:\
22/9/2020 - 4:45:47.918Open532C:\Monitor\proc.exeC:\Monitor
22/9/2020 - 4:45:47.918Unknown532C:\Monitor\proc.exeC:\Monitor
22/9/2020 - 4:45:47.918Open532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:47.918Unknown532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:47.918Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\ole32.dll
22/9/2020 - 4:45:47.918Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rpcss.dll
22/9/2020 - 4:45:47.918Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rpcss.dll
22/9/2020 - 4:45:47.918Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\uxtheme.dll
22/9/2020 - 4:45:47.918Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\uxtheme.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\l_intl.nls
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
22/9/2020 - 4:45:47.965Unknown532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
22/9/2020 - 4:45:47.965Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.config
22/9/2020 - 4:45:47.965Open532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:47.965Unknown532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:47.965Open532C:\Monitor\proc.exeC:\Monitor
22/9/2020 - 4:45:47.965Unknown532C:\Monitor\proc.exeC:\Monitor
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:47.965Open532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Monitor\CRYPTSP.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\cryptsp.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\cryptsp.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.59Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
22/9/2020 - 4:45:48.106Unknown532C:\Monitor\proc.exeC:\Monitor\proc.exe
22/9/2020 - 4:45:48.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.215Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.262Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.309Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.356Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.403Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.450Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:48.825Open532C:\Monitor\proc.exeC:\Windows\assembly\pubpol4.dat
22/9/2020 - 4:45:48.825Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC\PublisherPolicy.tme
22/9/2020 - 4:45:48.825Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.config
22/9/2020 - 4:45:48.825Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:48.825Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.config
22/9/2020 - 4:45:48.825Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:48.825Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:48.825Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:48.825Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:48.825Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:48.887Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dll
22/9/2020 - 4:45:49.90Unknown532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.90Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dll
22/9/2020 - 4:45:49.90Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.137Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.184Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.278Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.325Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.372Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.465Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.512Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.559Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.653Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.700Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.747Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.793Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.840Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.887Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.934Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:49.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:50.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:50.75Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:50.122Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:50.168Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dll
22/9/2020 - 4:45:50.309Unknown532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.309Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dll
22/9/2020 - 4:45:50.309Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.356Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.403Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.450Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.497Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.543Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.637Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.637Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.684Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:50.731Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dll
22/9/2020 - 4:45:50.872Unknown532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:50.872Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dll
22/9/2020 - 4:45:50.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:50.918Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:50.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.12Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.59Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.153Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.200Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.247Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.293Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.372Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.465Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.512Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.559Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.653Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.700Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.747Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.793Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.840Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.887Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.934Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:51.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.75Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.122Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.168Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.215Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.262Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.309Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.356Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.403Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.450Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:52.497Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:45:52.731Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:45:52.731Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:53.293Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:53.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:53.387Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:45:53.481Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:45:53.481Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:53.528Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:53.575Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:53.622Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:53.668Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:53.715Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:53.762Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:45:53.872Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:45:53.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:53.918Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:53.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:54.12Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:54.59Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.153Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.200Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.247Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:54.293Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:45:54.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.387Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.481Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.528Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.575Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.622Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.668Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.715Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.762Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.809Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.856Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.903Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.950Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:54.997Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.43Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:55.90Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:55.137Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:55.184Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:55.278Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:55.325Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.372Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.465Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.512Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.653Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.700Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.747Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.793Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.840Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.887Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.934Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:55.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.75Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.122Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.168Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.215Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.262Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.309Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.356Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.403Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.450Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.497Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.543Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.637Open532C:\Monitor\proc.exeC:\Users\Behemot
22/9/2020 - 4:45:56.637Open532C:\Monitor\proc.exeC:\Users\Behemot
22/9/2020 - 4:45:56.637Unknown532C:\Monitor\proc.exeC:\Users\Behemot
22/9/2020 - 4:45:56.637Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
22/9/2020 - 4:45:56.637Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
22/9/2020 - 4:45:56.637Unknown532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
22/9/2020 - 4:45:56.637Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.684Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.731Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.778Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.825Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.872Open532C:\Monitor\proc.exeC:\Windows\Globalization\pt-br.nlp
22/9/2020 - 4:45:56.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.918Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:56.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.12Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.config
22/9/2020 - 4:45:57.12Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:57.12Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.153Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.200Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.247Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.293Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.config
22/9/2020 - 4:45:57.293Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:57.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.340Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:57.340Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:57.340Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:57.340Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:57.340Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:57.340Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\CONFIG\machine.configmachine.config
22/9/2020 - 4:45:57.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.481Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:45:57.481Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\sorttbls.nlp
22/9/2020 - 4:45:57.622Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\sortkey.nlp
22/9/2020 - 4:45:57.715Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.762Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.809Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.856Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.903Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:57.997Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:58.43Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:58.90Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:58.137Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:58.184Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\bcrypt.dll
22/9/2020 - 4:45:58.184Open532C:\Monitor\proc.exeC:\Monitor\bcrypt.dll
22/9/2020 - 4:45:58.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\bcrypt.dll
22/9/2020 - 4:45:58.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\bcrypt.dll
22/9/2020 - 4:45:58.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:58.278Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:45:58.325Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.372Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.465Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.512Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.559Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.653Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.700Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.747Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.825Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:58.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:58.918Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:58.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:59.12Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:59.59Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:59.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:45:59.153Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.200Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.247Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.293Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.387Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.481Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.528Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.575Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.622Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.668Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.762Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.809Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.856Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.903Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.950Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:45:59.997Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:0.43Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:0.90Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:0.137Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:0.184Open532C:\Monitor\proc.exeC:\Monitor\dwmapi.dll
22/9/2020 - 4:46:0.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\dwmapi.dll
22/9/2020 - 4:46:0.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\dwmapi.dll
22/9/2020 - 4:46:0.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:0.278Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:0.325Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:0.372Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:0.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:0.465Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:0.512Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:0.559Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:0.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:0.653Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:0.700Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:0.700Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:0.840Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:0.840Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
22/9/2020 - 4:46:0.887Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:0.887Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
22/9/2020 - 4:46:0.887Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:0.934Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:0.981Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.28Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.75Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.122Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.168Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.215Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.262Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:1.262Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:1.262Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.309Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.356Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.403Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.450Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
22/9/2020 - 4:46:1.450Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
22/9/2020 - 4:46:1.450Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.450Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
22/9/2020 - 4:46:1.450Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.450Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.450Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.497Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\VERSION.dll
22/9/2020 - 4:46:1.497Open532C:\Monitor\proc.exeC:\Monitor\VERSION.dll
22/9/2020 - 4:46:1.497Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\version.dll
22/9/2020 - 4:46:1.497Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\version.dll
22/9/2020 - 4:46:1.497Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
22/9/2020 - 4:46:1.497Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.497Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.543Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dll
22/9/2020 - 4:46:1.543Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.543Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.590Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:1.637Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:1.684Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:1.731Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:1.778Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:1.825Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:1.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:1.918Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:1.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.12Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.59Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.153Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.200Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.247Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:2.293Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:2.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:2.387Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:2.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:2.481Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.528Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.575Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.622Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:2.668Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:2.715Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:2.762Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:2.809Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:2.856Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.184Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.278Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.325Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.372Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.465Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.512Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.559Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.653Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.700Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.747Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.793Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.887Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.887Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.934Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.934Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\ntdll.dll
22/9/2020 - 4:46:14.934Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:14.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:14.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:14.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:14.981Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:14.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:14.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:14.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:15.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:15.28Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:15.28Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:15.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:15.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:15.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:15.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:15.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:15.122Open532C:\Monitor\proc.exeC:\Monitor\RpcRtRemote.dll
22/9/2020 - 4:46:15.122Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\RpcRtRemote.dll
22/9/2020 - 4:46:15.122Unknown532C:\Monitor\proc.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
22/9/2020 - 4:46:15.122Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\RpcRtRemote.dll
22/9/2020 - 4:46:15.122Unknown532C:\Monitor\proc.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
22/9/2020 - 4:46:15.168Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:15.168Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.dll
22/9/2020 - 4:46:15.168Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.dll
22/9/2020 - 4:46:15.168Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemcomn.dll
22/9/2020 - 4:46:15.168Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbemcomn.dll
22/9/2020 - 4:46:15.168Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbemcomn.dll
22/9/2020 - 4:46:15.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\Logs
22/9/2020 - 4:46:15.184Unknown532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\Logs
22/9/2020 - 4:46:15.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\advapi32.dll
22/9/2020 - 4:46:15.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\advapi32.dll
22/9/2020 - 4:46:15.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemprox.dll
22/9/2020 - 4:46:15.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemprox.dll
22/9/2020 - 4:46:15.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wmiutils.dll
22/9/2020 - 4:46:15.184Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wmiutils.dll
22/9/2020 - 4:46:15.387Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemsvc.dll
22/9/2020 - 4:46:15.387Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemsvc.dll
22/9/2020 - 4:46:15.840Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\fastprox.dll
22/9/2020 - 4:46:15.840Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\fastprox.dll
22/9/2020 - 4:46:15.840Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\NTDSAPI.dll
22/9/2020 - 4:46:15.840Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\ntdsapi.dll
22/9/2020 - 4:46:15.840Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\ntdsapi.dll
22/9/2020 - 4:46:16.278Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.325Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.325Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.372Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\pt-BR\KernelBase.dll.mui
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:16.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.481Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.481Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wbem\wbemdisp.tlb
22/9/2020 - 4:46:16.481Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\OLEAUT32.dll
22/9/2020 - 4:46:16.950Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.950Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:16.950Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:16.950Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
22/9/2020 - 4:46:16.950Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.950Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
22/9/2020 - 4:46:16.950Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.950Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.950Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.950Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.950Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.950Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.950Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.950Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:16.950Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:16.950Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.965Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
22/9/2020 - 4:46:16.965Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
22/9/2020 - 4:46:16.965Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.965Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
22/9/2020 - 4:46:16.965Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.965Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.965Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
22/9/2020 - 4:46:16.981Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.981Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:46:16.981Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:46:16.981Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:46:16.981Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:46:16.981Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dll
22/9/2020 - 4:46:16.981Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.981Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.981Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\CustomMarshalers.dllCustomMarshalers.dll
22/9/2020 - 4:46:16.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.997Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:16.997Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:17.43Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:17.43Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:17.43Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\CustomMarshalers\2.0.0.0__b03f5f7f11d50a3a\oleaut32.DLL
22/9/2020 - 4:46:18.28Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dll
22/9/2020 - 4:46:18.28Unknown532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:18.28Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System.Management\2.0.0.0__b03f5f7f11d50a3a
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.75Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.122Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.122Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.168Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.215Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.262Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.309Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:18.356Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:18.403Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.450Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.497Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:18.543Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:18.731Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.778Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.825Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:18.918Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:18.965Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
22/9/2020 - 4:46:19.28Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dllWMINet_Utils.dll
22/9/2020 - 4:46:19.28Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
22/9/2020 - 4:46:19.28Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dllWMINet_Utils.dll
22/9/2020 - 4:46:19.75Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dllWMINet_Utils.dll
22/9/2020 - 4:46:19.122Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dllWMINet_Utils.dll
22/9/2020 - 4:46:19.168Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dllWMINet_Utils.dll
22/9/2020 - 4:46:19.231Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dll
22/9/2020 - 4:46:19.231Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dllWMINet_Utils.dll
22/9/2020 - 4:46:19.231Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.Local
22/9/2020 - 4:46:19.231Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:46:19.231Unknown532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:46:19.231Open532C:\Monitor\proc.exeC:\Windows\winsxs\x86_microsoft.vc80.crt_1fc8b3b9a1e18e3b_8.0.50727.4940_none_d08cc06a442b34fc
22/9/2020 - 4:46:19.231Read532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\WMINet_Utils.dllWMINet_Utils.dll
22/9/2020 - 4:46:19.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:19.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Management\fdef4c991303c17ece877574f240249f\System.Management.ni.dllSystem.Management.ni.dll
22/9/2020 - 4:46:19.747Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\oleaut32.dll
22/9/2020 - 4:46:24.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:24.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:24.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:24.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:24.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:24.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:25.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:25.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:27.137Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:27.184Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:27.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:27.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:30.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:30.387Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:30.528Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:37.731Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:37.778Open532C:\Monitor\proc.exeC:\%insfolder%\%insname%
22/9/2020 - 4:46:49.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:49.153Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:49.200Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:49.247Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:49.293Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:46:49.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:49.387Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:46:49.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:49.481Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:49.528Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:49.575Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:49.622Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:49.668Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:49.715Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:49.762Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
22/9/2020 - 4:46:49.762Unknown532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
22/9/2020 - 4:46:49.762Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:49.809Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:49.903Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:49.950Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:49.997Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.43Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.90Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.137Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.184Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.278Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic\8.0.0.0__b03f5f7f11d50a3a\Microsoft.VisualBasic.dllMicrosoft.VisualBasic.dll
22/9/2020 - 4:46:50.325Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.372Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\QIP Surf\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CatalinaGroup\Citrio\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Amigo\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Chromium\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\liebao\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Yandex\YandexBrowser\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CentBrowser\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\BraveSoftware\Brave-Browser\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Iridium\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\MapleStudio\ChromePlus\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Software\Opera Stable
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\360Chrome\Chrome\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Comodo\Dragon\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Epic Privacy Browser\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\7Star\7Star\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Orbitum\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\uCozMedia\Uran\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Kometa\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Vivaldi\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Torch\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Chedot\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Coowon\Coowon\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Sputnik\Sputnik\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Fenrir Inc\Sleipnir5\setting\modules\ChromiumViewer
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CocCoc\Browser\User Data
22/9/2020 - 4:46:50.528Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Elements Browser\User Data
22/9/2020 - 4:46:50.543Open532C:\Monitor\proc.exeC:\Program Files (x86)\jDownloader\config\database.script
22/9/2020 - 4:46:50.543Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.637Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.684Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.731Open532C:\Monitor\proc.exeC:\Windows\Globalization\en-us.nlp
22/9/2020 - 4:46:50.731Open532C:\Monitor\proc.exeC:\Monitor\proc.exe.config
22/9/2020 - 4:46:50.731Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:50.778Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089
22/9/2020 - 4:46:50.778Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089
22/9/2020 - 4:46:50.872Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089
22/9/2020 - 4:46:50.872Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dll
22/9/2020 - 4:46:50.965Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:50.965Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dll
22/9/2020 - 4:46:50.965Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.12Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.59Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.106Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.153Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.200Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089
22/9/2020 - 4:46:51.200Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089
22/9/2020 - 4:46:51.200Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dll
22/9/2020 - 4:46:51.200Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dll
22/9/2020 - 4:46:51.200Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.200Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dll
22/9/2020 - 4:46:51.200Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.200Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.200Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.247Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:51.372Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:51.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:51.465Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:51.512Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:51.559Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:51.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:51.653Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:51.700Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:51.747Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:51.793Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:51.840Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:51.887Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:51.934Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Claws-mail
22/9/2020 - 4:46:51.934Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Claws-mail\clawsrc
22/9/2020 - 4:46:51.934Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:51.981Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:52.28Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:52.75Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:52.122Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:52.168Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:52.215Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:52.262Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:52.309Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:52.356Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:52.403Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.450Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\8pecxstudios\Cyberfox\profiles.ini
22/9/2020 - 4:46:52.450Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.497Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:52.543Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:52.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.637Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.684Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\8pecxstudios\Cyberfox\profiles.ini
22/9/2020 - 4:46:52.684Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Google\Chrome\User Data\
22/9/2020 - 4:46:52.684Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.731Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.778Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.825Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.918Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:52.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:53.12Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:53.59Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:53.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:53.153Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:53.200Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:53.247Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:53.293Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Edge\User Data
22/9/2020 - 4:46:53.293Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:53.340Open532C:\Monitor\proc.exeC:\Monitor\vaultcli.dll
22/9/2020 - 4:46:53.340Open532C:\Monitor\proc.exeC:\Monitor\vaultcli.dll
22/9/2020 - 4:46:53.340Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\vaultcli.dll
22/9/2020 - 4:46:53.340Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\vaultcli.dll
22/9/2020 - 4:46:54.122Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.122Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.137Open532C:\Monitor\proc.exeC:\Storage
22/9/2020 - 4:46:54.137Open532C:\Monitor\proc.exeC:\mail
22/9/2020 - 4:46:54.137Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\VirtualStore\Program Files\Foxmail\mail\
22/9/2020 - 4:46:54.137Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\VirtualStore\Program Files (x86)\Foxmail\mail\
22/9/2020 - 4:46:54.137Open532C:\Monitor\proc.exeC:\Program Files (x86)
22/9/2020 - 4:46:54.137Unknown532C:\Monitor\proc.exeC:\Program Files (x86)
22/9/2020 - 4:46:54.137Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System\67c97ffbe01458a63ecb518c7444c1f1\System.ni.dllSystem.ni.dll
22/9/2020 - 4:46:54.137Open532C:\Monitor\proc.exeC:\Program Files (x86)\Common Files\Apple\Apple Application Support\plutil.exe
22/9/2020 - 4:46:54.137Open532C:\Monitor\proc.exeC:\cftp\Ftplist.txt
22/9/2020 - 4:46:54.137Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\UCBrowser
22/9/2020 - 4:46:54.137Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.153Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Ipswitch\WS_FTP\Sites\ws_ftp.ini
22/9/2020 - 4:46:54.153Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\K-Meleon\profiles.ini
22/9/2020 - 4:46:54.153Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\K-Meleon\profiles.ini
22/9/2020 - 4:46:54.153Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Mozilla\Firefox\profiles.ini
22/9/2020 - 4:46:54.153Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Mozilla\Firefox\profiles.ini
22/9/2020 - 4:46:54.153Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTPGetter\servers.xml
22/9/2020 - 4:46:54.153Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Waterfox\profiles.ini
22/9/2020 - 4:46:54.153Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Waterfox\profiles.ini
22/9/2020 - 4:46:54.215Open532C:\Monitor\proc.exeC:\Monitor\Folder.lst
22/9/2020 - 4:46:54.215Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.262Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.309Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.356Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.403Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.450Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\SmartFTP\Client 2.0\Favorites\Quick Connect\
22/9/2020 - 4:46:54.450Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.497Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\SmartFTP\Client 2.0\Favorites\Quick Connect\
22/9/2020 - 4:46:54.497Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\CoreFTP\sites.idx
22/9/2020 - 4:46:54.497Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:54.543Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:54.590Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:54.637Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:54.918Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\mpr.dll
22/9/2020 - 4:46:54.918Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\mpr.dll
22/9/2020 - 4:46:54.918Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\scrrun.dll
22/9/2020 - 4:46:54.965Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\scrrun.dll
22/9/2020 - 4:46:55.340Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\SysWOW64\wshom.ocx
22/9/2020 - 4:46:55.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:55.434Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_pt-BR_b77a5c561934e089\mscorlib.resources.dllmscorlib.resources.dll
22/9/2020 - 4:46:55.481Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Trillian\users\global\accounts.dat
22/9/2020 - 4:46:55.481Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\The Bat!
22/9/2020 - 4:46:55.481Open532C:\Monitor\proc.exeC:\FTP Navigator\Ftplist.txt
22/9/2020 - 4:46:55.481Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Mozilla\SeaMonkey\profiles.ini
22/9/2020 - 4:46:55.481Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Mozilla\SeaMonkey\profiles.ini
22/9/2020 - 4:46:55.481Open532C:\Monitor\proc.exeC:\Users\All Users\AppData\Roaming\FlashFXP\3quick.dat
22/9/2020 - 4:46:55.481Open532C:\Monitor\proc.exeC:\ProgramData\APPDATA\ROAMING\FLASHFXP\3QUICK.DAT
22/9/2020 - 4:46:55.481Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dll
22/9/2020 - 4:46:55.590Unknown532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:55.590Open532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dll
22/9/2020 - 4:46:55.590Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:55.637Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:55.684Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:55.731Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:55.778Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:55.825Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:55.872Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:55.918Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:55.965Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.12Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.59Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.106Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.153Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.200Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.247Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.293Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.340Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.387Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:46:56.434Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089
22/9/2020 - 4:46:56.434Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.481Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.528Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.575Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.622Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.668Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.715Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.762Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.809Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.856Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.903Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.950Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:56.997Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:57.43Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:57.90Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:57.137Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:57.184Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:57.231Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:57.278Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Xml\ef4a32979d02a76972d22c8161778f10\System.Xml.ni.dllSystem.Xml.ni.dll
22/9/2020 - 4:46:57.325Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Psi\profiles
22/9/2020 - 4:46:57.325Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Psi+\profiles
22/9/2020 - 4:46:57.325Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Comodo\IceDragon\profiles.ini
22/9/2020 - 4:46:57.325Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Comodo\IceDragon\profiles.ini
22/9/2020 - 4:46:57.325Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Thunderbird\profiles.ini
22/9/2020 - 4:46:57.325Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Thunderbird\profiles.ini
22/9/2020 - 4:46:57.418Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:57.465Unknown532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\pt-BR
22/9/2020 - 4:46:57.465Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\pt-BR\mscorrc.dll
22/9/2020 - 4:46:57.512Open532C:\Monitor\proc.exeC:\Windows\Microsoft.NET\Framework\v2.0.50727\pt-BR\mscorrc.dll
22/9/2020 - 4:46:57.606Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Mail\Opera Mail\wand.dat
22/9/2020 - 4:46:57.606Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NETGATE Technologies\BlackHawk\profiles.ini
22/9/2020 - 4:46:57.606Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NETGATE Technologies\BlackHawk\profiles.ini
22/9/2020 - 4:46:57.606Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:57.653Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FileZilla\recentservers.xml
22/9/2020 - 4:46:57.653Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Tencent\QQBrowser\User Data
22/9/2020 - 4:46:57.653Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Tencent\QQBrowser\User Data\Default\EncryptedStorage
22/9/2020 - 4:46:57.653Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Mozilla\icecat\profiles.ini
22/9/2020 - 4:46:57.653Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Mozilla\icecat\profiles.ini
22/9/2020 - 4:46:57.653Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Postbox\profiles.ini
22/9/2020 - 4:46:57.653Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Postbox\profiles.ini
22/9/2020 - 4:46:57.653Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Moonchild Productions\Pale Moon\profiles.ini
22/9/2020 - 4:46:57.653Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Moonchild Productions\Pale Moon\profiles.ini
22/9/2020 - 4:46:57.653Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:57.700Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\falkon\profiles\profiles.ini
22/9/2020 - 4:46:57.700Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Pocomail\accounts.ini
22/9/2020 - 4:46:57.700Open532C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Flock\Browser\profiles.ini
22/9/2020 - 4:46:57.700Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\mscorlib\38bf604432e1a30c954b2ee40d6a2d1c\mscorlib.ni.dllmscorlib.ni.dll
22/9/2020 - 4:46:57.747Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_32\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a
22/9/2020 - 4:46:57.747Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a
22/9/2020 - 4:46:57.793Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a
22/9/2020 - 4:46:57.793Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dll
22/9/2020 - 4:46:57.840Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dllMicrosoft.VisualBasic.resources.dll
22/9/2020 - 4:46:57.840Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dll
22/9/2020 - 4:46:57.840Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dllMicrosoft.VisualBasic.resources.dll
22/9/2020 - 4:46:57.887Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dllMicrosoft.VisualBasic.resources.dll
22/9/2020 - 4:46:57.934Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dllMicrosoft.VisualBasic.resources.dll
22/9/2020 - 4:46:57.981Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dllMicrosoft.VisualBasic.resources.dll
22/9/2020 - 4:46:58.28Read532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dllMicrosoft.VisualBasic.resources.dll
22/9/2020 - 4:46:58.75Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a
22/9/2020 - 4:46:58.75Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a
22/9/2020 - 4:46:58.75Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dll
22/9/2020 - 4:46:58.75Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dll
22/9/2020 - 4:46:58.75Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dllMicrosoft.VisualBasic.resources.dll
22/9/2020 - 4:46:58.75Open532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dll
22/9/2020 - 4:46:58.75Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dllMicrosoft.VisualBasic.resources.dll
22/9/2020 - 4:46:58.75Unknown532C:\Monitor\proc.exeC:\Windows\assembly\GAC_MSIL\Microsoft.VisualBasic.resources\8.0.0.0_pt-BR_b03f5f7f11d50a3a\Microsoft.VisualBasic.resources.dllMicrosoft.VisualBasic.resources.dll
22/9/2020 - 4:47:0.637Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\tzres.dll
22/9/2020 - 4:47:0.637Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\tzres.dll
22/9/2020 - 4:47:0.637Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\tzres.dll
22/9/2020 - 4:47:0.637Open532C:\Monitor\proc.exeC:\Windows\SysWOW64\tzres.dll
22/9/2020 - 4:47:11.403Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll
22/9/2020 - 4:47:11.450Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:47:11.497Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Drawing\6f4f738362752c5d3a2c9234d604784d\System.Drawing.ni.dllSystem.Drawing.ni.dll
22/9/2020 - 4:47:11.543Read532C:\Monitor\proc.exeC:\Windows\assembly\NativeImages_v2.0.50727_32\System.Windows.Forms\c0f9cb97c68eb938bd0b36f7ee90e60f\System.Windows.Forms.ni.dllSystem.Windows.Forms.ni.dll

Process
Trace
22/9/2020 - 4:45:44.122Create2476C:\malware.exe752C:\Monitor\proc.exe
22/9/2020 - 4:45:44.309Create752C:\Monitor\proc.exe532C:\Monitor\proc.exe
22/9/2020 - 4:45:44.372Terminate2476C:\malware.exe752C:\Monitor\proc.exe

Analysis
Reason
Timeout

Status
Sucessfully Executed

Results
1

Registry
Trace

File Summary
Created
Identified: True check_circle

Deleted
Identified: False cancel

Process Summary
Created
Identified: True check_circle

Deleted
Identified: True check_circle

Registry Summary
Proxy
Identified: False cancel

AutoRun
Identified: False cancel

Created
Identified: False cancel

Deleted
Identified: False cancel

Browsers
Identified: False cancel

Internet
Identified: False cancel

Loading...

DNS
Query

Response

TCP
Info

UDP
Info

HTTP
Info

Summary
DNS
False cancel

TCP
False cancel

UDP
False cancel

HTTP
False cancel

Results
BINARY
NFS 2.0 (Threshold = 0.8)
confidence: 85.00%
suspicious: False cancel

Decision Tree (NFS-BRMalware)
confidence: 100.00%
suspicious: True check_circle

MalConv (Ember: Raw Bytes, Threshold=0.5)
confidence: 93.71%
suspicious: True check_circle

Random Forest (100 estimators, NFS-BRMalware)
confidence: 64.00%
suspicious: False cancel

Non-Negative MalConv (Ember: Raw Bytes, Threshold=0.35)
confidence: 90.51%
suspicious: False cancel

LightGDM (Ember: File Characteristics, Threshold=0.8336)
confidence: 61.51%
suspicious: False cancel

Add to Collection
Download