Report #670 check_circle

  • Creation Date: Oct. 19, 2019, 2:19 a.m.
  • Last Update: Oct. 19, 2019, 3:51 a.m.
  • File: 017
  • Results:
Binary
DLL
False cancel
Size
2.17MB
trid
35.0% InstallShield setup
33.8% Win32 EXE PECompact compressed
22.4% Win64 Executable
3.6% Win32 Executable
1.6% OS/2 Executable
type
PE
wordsize
32
Subsystem
Windows CLI
Hashes
md5
b3b7ef09cce389ddae70f130c32b7e95
sha1
59f74e7c8b74335fbfaa129aee5c34e497f6873a
crc32
0x50023297
sha224
ffccd12ebdd336e2a4dd0568aee768fb73354ce25cb4dc3503a07fca
sha256
5ff34a8f4b507af29baba7ee581df15f86ecf5f8c40501e0efdebf96fb10fd1b
sha384
6612ae1688572460e8a824fa7e6d9eede4ff52e6632e53a1131ba84033f7a9997ba8b51e9c6bcbba84ac08d300cbadbf
sha512
057007a552af5a54cb05af01b193408d9acf96ad48f55deb5968e965098925f6f716e6ded81ecb5817aab6a98225296d7353f11d7f5944b6fddcdea0a8fec095
ssdeep
49152:8BHaa3gxr/nIiYd/oWPoY20R0hBqEbU2UpPhOZy+hz7FxlU09VOTKqujAQ58nuw2:b5jKiOj+7
Community
Google
True check_circle
HashLib
False cancel
YARA
Matches
maldoc_getEIP_method_1, IP, win_private_profile, Dropper_Strings, with_sqlite, HasDebugData, Antivirus, CRC32_poly_Constant, BASE64_table, escalate_priv, HasRichSignature, possible_includes_base64_packed_functions, VC8_Microsoft_Corporation, DebuggerException__SetConsoleCtrl, spreading_share, IsConsole, create_service, CRC32_table, network_dns, cred_local, network_http, win_files_operation, IsPE32, win_hook, disable_dep, antisb_threatExpert, contentis_base64, network_tcp_socket, SEH__vectored, screenshot, win_token, win_mutex, keylogger, DebuggerCheck__GlobalFlags, Misc_Suspicious_Strings, maldoc_find_kernel32_base_method_1, migrate_apc, Check_Dlls, DebuggerHiding__Thread, network_udp_sock, System_Tools, anti_dbg, network_tcp_listen, DebuggerCheck__QueryInfo, url, android_meterpreter, Microsoft_Visual_Cpp_8, win_registry, Typical_Malware_String_Transforms, HasOverlay, Browsers, network_dga, Advapi_Hash_API, Big_Numbers5, Crypt32_CryptBinaryToString_API, create_com_service, powershell, Big_Numbers0

Suspicious
True check_circle

Strings
List
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
</dc:rights></rdf:Description><rdf:Description rdf:about="uuid:faf5bdd5-ba3d-11da-ad31-d33d75182f1b" xmlns:tiff="http://ns.adobe.com/tiff/1.0/"/><rdf:Description rdf:about="uuid:faf5bdd5-ba3d-11da-ad31-d33d75182f1b" xmlns:exif="http://ns.adobe.com/exif/1.0/"/></rdf:RDF></x:xmpmeta>
</dc:rights></rdf:Description><rdf:Description rdf:about="uuid:faf5bdd5-ba3d-11da-ad31-d33d75182f1b" xmlns:tiff="http://ns.adobe.com/tiff/1.0/"/><rdf:Description rdf:about="uuid:faf5bdd5-ba3d-11da-ad31-d33d75182f1b" xmlns:exif="http://ns.adobe.com/exif/1.0/"/></rdf:RDF></x:xmpmeta>
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
qhttp://ns.adobe.com/xap/1.0/
qhttp://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:dc="http://purl.org/dc/elements/1.1/">
<dpiAware xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>
<dpiAware xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>
<dpiAware xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>
<dpiAware xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>

Foremost
Matches
0.exe, 221 KB
Suspicious
True check_circle
Heuristics
IPs
hasIPs: False cancel
Allowed
Suspicious
hasAllowed: False cancel
hasSuspicious: False cancel

URLs
Allowed
hasURLs: True check_circle
Suspicious: ftps://, http://, file:///, https://, http://www.ibsensoftware.com/, ftp://
hasAllowed: False cancel
hasSuspicious: True check_circle

Files
Allowed: sqlite3.dll, mozsqlite3.dll, nss3.dll, lsasrv.dll, kernel32.dll, ntdll.dll, Shlwapi.dll, %s\nss3.dll, sCrypt32.dll, vaultcli.dll, OLEAUT32.dll, WS2_32.dll, MSVCR110.dll, ole32.dll
hasFiles: True check_circle
Suspicious: %s\site.xml, {*.xml, %s\FileZilla\sitemanager.xml, %s\FileZilla\filezilla.xml, %s\.config\fullsync\profiles.xml, %s\FTP Now\sites.xml, %s\FTPInfo\ServerList.xml, %s\DeluxeFTP\sites.xml, %s\FTPGetter\servers.xml, %s\FTPGetter\Profile\servers.xml, %s\Notepad++\plugins\config\NppFTP\NppFTP.xml, %s\UltraFXP\sites.xml, %s\FileZilla\recentservers.xml, %s\32BitFtp.TMP, %s\QupZilla\profiles\default\browsedata.db, %s\INSoftware\NovaFTP\NovaFTP.db, %s\Far Manager\Profile\PluginsData\42E4AEB1-A230-44F4-B33C-F195BB654931.db, signons2.txt, signons.txt, %s\FTP Navigator\Ftplist.txt, %s\Steed\bookmarks.txt, signons3.txt, %s\GoFTP\settings\Connections.txt, %s\BlazeFtp\site.dat, %s\Estsoft\ALFTP\ESTdb2.dat, *Sites.dat, %s\NetDrive2\drives.dat, *quick.dat, %s\WinFtp Client\Favorites.dat, wand.dat
hasAllowed: True check_circle
hasSuspicious: True check_circle

Binary
Sizes
RVA
RVA: 16
Suspicious: False cancel
Code
Size: 223232
Suspicious: False cancel
Image
Address: 4194304
Suspicious: False cancel
Stack
Stack: 4096
Suspicious: False cancel
Headers
Headers: 1024
Suspicious: False cancel
Suspicious: False cancel

Symbols
Number
Number: 0
Suspicious: True check_circle
Pointer
Pointer: 0
Suspicious: True check_circle
Directories
Number: 16
Suspicious: False cancel

Checksum
Value: 0
Suspicous: True check_circle

Sections
Allowed: .text, .rdata, .data, .rsrc, .reloc
Suspicious
hasAllowed: True check_circle
hasSections: True check_circle
hasSuspicious: False cancel

Versions
OS
Version: 6
Suspicious: False cancel
Image
Version: True check_circle
Suspicious: 6
Linker
Version: 11.0
Suspicious: False cancel
Subsystem
Version: 6.0
Suspicious: False cancel
Suspicious: False cancel

EntryPoint
Address: 4951
Suspicious: False cancel

Anomalies
Anomalies: The header checksum and the calculated checksum do not match.
hasAnomalies: True check_circle

Libraries
Allowed: lsasrv.dll, kernel32.dll, ntdll.dll, shlwapi.dll, vaultcli.dll, oleaut32.dll, ws2_32.dll, ole32.dll
hasLibs: True check_circle
Suspicious: sqlite3.dll, mozsqlite3.dll, nss3.dll, %s\nss3.dll, scrypt32.dll, msvcr110.dll
hasAllowed: True check_circle
hasSuspicious: True check_circle

Timestamp
Past: False cancel
Valid: True check_circle
Value: 2019-08-28 16:15:46
Future: False cancel

Compilation
Packed: False cancel
Missing: False cancel
Packers
Compiled: True check_circle
Compilers: Microsoft Visual C++ 8, VC8 -> Microsoft Corporation

Obfuscation
XOR: True check_circle
Fuzzing: False cancel

PEDetector
Matches
6304
Suspicious
True check_circle
Disassembly
hasTricks
True check_circle
Tricks
ldr
.rsrc: 1

pushret
.rsrc: 41
.text: 1

nopsequence
.rsrc: 28

pushpopmath
.rsrc: 18

sizeofimage
.rsrc: 1

garbagebytes
.rsrc: 10
.text: 1

hookdetection
.rsrc: 5

software breakpoint
.rsrc: 4

fakeconditionaljumps
.rsrc: 2

programcontrolflowchange
.rsrc: 8
.text: 1

cpuinstructionsresultscomparison
.rdata: 1

AVclass
ramnit
1
VirusTotal
md5
b3b7ef09cce389ddae70f130c32b7e95
sha1
59f74e7c8b74335fbfaa129aee5c34e497f6873a
SCANS
AVG
result: Win32:RmnDrp
update: 20190828
version: 18.4.3895.0
detected: True check_circle

CMC
update: 20190321
version: 1.1.0.977
detected: False cancel

MAX
result: malware (ai score=82)
update: 20190829
version: 2018.9.12.1
detected: True check_circle

APEX
result: Malicious
update: 20190827
version: 5.56
detected: True check_circle

Bkav
update: 20190828
version: 1.3.0.10239
detected: False cancel

K7GW
update: 20190828
version: 11.64.31845
detected: False cancel

ALYac
result: Trojan.PWS.ZKD
update: 20190828
version: 1.1.1.5
detected: True check_circle

Avast
result: Win32:RmnDrp
update: 20190828
version: 18.4.3895.0
detected: True check_circle

Avira
result: W32/Ramnit.C
update: 20190828
version: 8.3.3.8
detected: True check_circle

Baidu
result: Win32.Trojan.Kryptik.mx
update: 20190318
version: 1.0.0.2
detected: True check_circle

Cyren
result: W32/Ramnit.B!Generic
update: 20190828
version: 6.2.0.1
detected: True check_circle

DrWeb
result: Trojan.PWS.Stealer.23680
update: 20190828
version: 7.0.41.7240
detected: True check_circle

GData
result: Trojan.PWS.ZKD
update: 20190829
version: A:25.23218B:26.15895
detected: True check_circle

Panda
update: 20190828
version: 4.6.4.2
detected: False cancel

VBA32
result: Virus.Win32.Nimnul.b
update: 20190828
version: 4.0.0
detected: True check_circle

VIPRE
update: 20190828
version: 77484
detected: False cancel

Zoner
update: 20190828
version: 1.0.0.1
detected: False cancel

ClamAV
result: Win.Trojan.naKocTb-6331389-1
update: 20190828
version: 0.101.4.0
detected: True check_circle

Comodo
update: 20190828
version: 31390
detected: False cancel

F-Prot
result: W32/Ramnit.B!Generic
update: 20190829
version: 4.7.1.166
detected: True check_circle

Ikarus
result: Win32.Ramnit
update: 20190828
version: 0.1.5.2
detected: True check_circle

McAfee
result: W32/Ramnit.a
update: 20190829
version: 6.0.6.653
detected: True check_circle

Rising
result: Trojan.Fareit!1.B343 (CLASSIC)
update: 20190829
version: 25.0.0.24
detected: True check_circle

Sophos
update: 20190828
version: 4.98.0
detected: False cancel

Yandex
result: Win32.Nimnul.Gen.2
update: 20190822
version: 5.5.2.24
detected: True check_circle

Zillya
update: 20190820
version: 2.0.0.3882
detected: False cancel

Acronis
update: 20190822
version: 1.0.1.51
detected: False cancel

Alibaba
update: 20190527
version: 0.3.0.5
detected: False cancel

Arcabit
result: Trojan.PWS.ZKD
update: 20190828
version: 1.0.0.856
detected: True check_circle

Cylance
result: Unsafe
update: 20190829
version: 2.3.1.101
detected: True check_circle

Endgame
result: malicious (high confidence)
update: 20190819
version: 3.0.14
detected: True check_circle

FireEye
result: Generic.mg.b3b7ef09cce389dd
update: 20190828
version: 29.7.0.0
detected: True check_circle

TACHYON
update: 20190829
version: 2019-08-29.01
detected: False cancel

Tencent
result: Virus.Win32.Nimnul.e
update: 20190829
version: 1.0.0.1
detected: True check_circle

ViRobot
update: 20190828
version: 2014.3.20.0
detected: False cancel

Webroot
update: 20190829
version: 1.0.0.403
detected: False cancel

eGambit
result: Trojan.Generic
update: 20190829
version: v4.3.6
detected: True check_circle

Ad-Aware
result: Trojan.PWS.ZKD
update: 20190829
version: 3.0.5.370
detected: True check_circle

AegisLab
update: 20190828
version: 4.2
detected: False cancel

Emsisoft
result: Trojan.PWS.ZKD (B)
update: 20190828
version: 2018.12.0.1641
detected: True check_circle

F-Secure
result: Malware.W32/Ramnit.C
update: 20190829
version: 12.0.86.52
detected: True check_circle

Fortinet
update: 20190828
version: 5.4.247.0
detected: False cancel

Invincea
update: 20190717
version: 6.3.6.26157
detected: False cancel

Jiangmin
update: 20190829
version: 16.0.100
detected: False cancel

Kingsoft
update: 20190829
version: 2013.8.14.323
detected: False cancel

Paloalto
update: 20190829
version: 1.0
detected: False cancel

Symantec
update: 20190828
version: 1.10.0.0
detected: False cancel

Trapmine
update: 20190826
version: 3.1.81.800
detected: False cancel

AhnLab-V3
update: 20190828
version: 3.16.1.25089
detected: False cancel

Antiy-AVL
result: Virus/Win32.Nimnul.a
update: 20190829
version: 3.0.0.1
detected: True check_circle

Kaspersky
result: Virus.Win32.Nimnul.a
update: 20190828
version: 15.0.1.13
detected: True check_circle

Microsoft
result: PWS:Win32/Primarypass.A
update: 20190828
version: 1.1.16200.1
detected: True check_circle

Qihoo-360
result: HEUR/QVM41.1.84C3.Malware.Gen
update: 20190829
version: 1.0.0.1120
detected: True check_circle

ZoneAlarm
result: Virus.Win32.Nimnul.a
update: 20190828
version: 1.0
detected: True check_circle

Cybereason
result: malicious.9cce38
update: 20190616
version: 1.2.449
detected: True check_circle

ESET-NOD32
result: Win32/Ramnit.H
update: 20190829
version: 19932
detected: True check_circle

TrendMicro
result: PE_RAMNIT.DEN
update: 20190829
version: 11.0.0.1006
detected: True check_circle

BitDefender
result: Trojan.PWS.ZKD
update: 20190828
version: 7.2
detected: True check_circle

CrowdStrike
result: win/malicious_confidence_60% (W)
update: 20190702
version: 1.0
detected: True check_circle

K7AntiVirus
update: 20190828
version: 11.64.31844
detected: False cancel

SentinelOne
result: DFI - Suspicious PE
update: 20190807
version: 1.0.31.22
detected: True check_circle

Avast-Mobile
update: 20190828
version: 190828-02
detected: False cancel

Malwarebytes
update: 20190828
version: 2.1.1.1115
detected: False cancel

TotalDefense
result: Win32/Ramnit.C
update: 20190828
version: 37.1.62.1
detected: True check_circle

CAT-QuickHeal
result: W32.Ramnit.BA
update: 20190827
version: 14.00
detected: True check_circle

NANO-Antivirus
result: Virus.Win32.Nimnul.fntoeg
update: 20190829
version: 1.0.134.24859
detected: True check_circle

MicroWorld-eScan
result: Trojan.PWS.ZKD
update: 20190829
version: 14.0.297.0
detected: True check_circle

SUPERAntiSpyware
update: 20190823
version: 5.6.0.1032
detected: False cancel

McAfee-GW-Edition
result: W32/Ramnit.a
update: 20190828
version: v2017.3010
detected: True check_circle

TrendMicro-HouseCall
result: PE_RAMNIT.DEN
update: 20190829
version: 10.0.0.1040
detected: True check_circle

total
70
sha256
5ff34a8f4b507af29baba7ee581df15f86ecf5f8c40501e0efdebf96fb10fd1b
scan_id
5ff34a8f4b507af29baba7ee581df15f86ecf5f8c40501e0efdebf96fb10fd1b-1567040955
resource
b3b7ef09cce389ddae70f130c32b7e95
positives
43
scan_date
2019-08-29 01:09:15
verbose_msg
Scan finished, information embedded
response_code
1
File
Trace
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Windows\AppPatch\sysmain.sdb
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Monitor
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Monitor
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Monitor
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Monitor
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Monitor
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Monitor
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Read1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Monitor\ui\SwDRM.dll
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Read1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Read1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Windows
19/10/2019 - 2:45:42.887Unknown1480C:\malware.exeC:\Monitor
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\Prefetch\PROC.EXE-5509F567.pf
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64log.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 2:45:42.903Unknown1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:42.903Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Write1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Write1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Windows\AppPatch\sysmain.sdb
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 2:45:42.918Unknown1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Read1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.918Open1488C:\Monitor\proc.exeC:\Monitor\ui\SwDRM.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.934Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.934Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.934Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.934Read1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.934Read1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 2:45:42.934Unknown1488C:\Monitor\proc.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Monitor\CRYPTSP.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:42.934Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows\Prefetch\PROCMGR.EXE-886EB5D5.pf
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64.dll
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64.dll
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64log.dll
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows
19/10/2019 - 2:45:43.59Unknown2476C:\Monitor\procmgr.exeC:\Windows
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Monitor
19/10/2019 - 2:45:43.59Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 2:45:43.75Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 2:45:43.75Open2476C:\Monitor\procmgr.exeC:\Monitor\procmgr.exe.Local
19/10/2019 - 2:45:43.75Open2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:43.75Unknown2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:43.75Open2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:43.75Open2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:43.75Open2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:43.75Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:43.75Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:43.90Open1488C:\Monitor\proc.exeC:\Program Files (x86)
19/10/2019 - 2:45:43.90Unknown1488C:\Monitor\proc.exeC:\Program Files (x86)
19/10/2019 - 2:45:43.90Open1488C:\Monitor\proc.exeC:\Program Files\NETGATE\Black Hawk
19/10/2019 - 2:45:43.90Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:43.90Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:43.90Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:43.90Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:43.90Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:43.90Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:43.90Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Lunascape\Lunascape6\plugins\{9BDD5314-20A6-4d98-AB30-8325A95771EE}
19/10/2019 - 2:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:43.90Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Comodo\Dragon\User Data\Default\Login Data
19/10/2019 - 2:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Comodo\Dragon\User Data\Default\Web Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalComodo\Dragon\Login Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalComodo\Dragon\Default\Login Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\MapleStudio\ChromePlus\User Data\Default\Login Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\MapleStudio\ChromePlus\User Data\Default\Web Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalMapleStudio\ChromePlus\Login Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalMapleStudio\ChromePlus\Default\Login Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Google\Chrome\User Data\Default\Login Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Google\Chrome\User Data\Default\Web Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalGoogle\Chrome\Login Data
19/10/2019 - 2:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalGoogle\Chrome\Default\Login Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Nichrome\User Data\Default\Login Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Nichrome\User Data\Default\Web Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalNichrome\Login Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalNichrome\Default\Login Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\RockMelt\User Data\Default\Login Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\RockMelt\User Data\Default\Web Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalRockMelt\Login Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalRockMelt\Default\Login Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Spark\User Data\Default\Login Data
19/10/2019 - 2:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Spark\User Data\Default\Web Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalSpark\Login Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalSpark\Default\Login Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Chromium\User Data\Default\Login Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Chromium\User Data\Default\Web Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalChromium\Login Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalChromium\Default\Login Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Titan Browser\User Data\Default\Login Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Titan Browser\User Data\Default\Web Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalTitan Browser\Login Data
19/10/2019 - 2:45:43.137Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalTitan Browser\Default\Login Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Torch\User Data\Default\Login Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Torch\User Data\Default\Web Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalTorch\Login Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalTorch\Default\Login Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Yandex\YandexBrowser\User Data\Default\Login Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Yandex\YandexBrowser\User Data\Default\Web Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalYandex\YandexBrowser\Login Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalYandex\YandexBrowser\Default\Login Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Epic Privacy Browser\User Data\Default\Login Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Epic Privacy Browser\User Data\Default\Web Data
19/10/2019 - 2:45:43.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalEpic Privacy Browser\Login Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalEpic Privacy Browser\Default\Login Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CocCoc\Browser\User Data\Default\Login Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CocCoc\Browser\User Data\Default\Web Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCocCoc\Browser\Login Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCocCoc\Browser\Default\Login Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Vivaldi\User Data\Default\Login Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Vivaldi\User Data\Default\Web Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalVivaldi\Login Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalVivaldi\Default\Login Data
19/10/2019 - 2:45:43.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Comodo\Chromodo\User Data\Default\Login Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Comodo\Chromodo\User Data\Default\Web Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalComodo\Chromodo\Login Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalComodo\Chromodo\Default\Login Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Superbird\User Data\Default\Login Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Superbird\User Data\Default\Web Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalSuperbird\Login Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalSuperbird\Default\Login Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Coowon\Coowon\User Data\Default\Login Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Coowon\Coowon\User Data\Default\Web Data
19/10/2019 - 2:45:43.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCoowon\Coowon\Login Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCoowon\Coowon\Default\Login Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Mustang Browser\User Data\Default\Login Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Mustang Browser\User Data\Default\Web Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalMustang Browser\Login Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalMustang Browser\Default\Login Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\360Browser\Browser\User Data\Default\Login Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\360Browser\Browser\User Data\Default\Web Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local360Browser\Browser\Login Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local360Browser\Browser\Default\Login Data
19/10/2019 - 2:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CatalinaGroup\Citrio\User Data\Default\Login Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CatalinaGroup\Citrio\User Data\Default\Web Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCatalinaGroup\Citrio\Login Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCatalinaGroup\Citrio\Default\Login Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Google\Chrome SxS\User Data\Default\Login Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Google\Chrome SxS\User Data\Default\Web Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalGoogle\Chrome SxS\Login Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalGoogle\Chrome SxS\Default\Login Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Orbitum\User Data\Default\Login Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Orbitum\User Data\Default\Web Data
19/10/2019 - 2:45:43.262Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalOrbitum\Login Data
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalOrbitum\Default\Login Data
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Iridium\User Data\Default\Login Data
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Iridium\User Data\Default\Web Data
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalIridium\Login Data
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalIridium\Default\Login Data
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:43.278Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera\Opera Next\data\User Data\Default\Login Data
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera\Opera Next\data\User Data\Default\Web Data
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera\Opera Next\data\Login Data
19/10/2019 - 2:45:43.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera\Opera Next\data\Default\Login Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Software\Opera Stable\User Data\Default\Login Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Software\Opera Stable\User Data\Default\Web Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Software\Opera Stable\Login Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Software\Opera Stable\Default\Login Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir\setting\modules\ChromiumViewer\User Data\Default\Login Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir\setting\modules\ChromiumViewer\User Data\Default\Web Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir\setting\modules\ChromiumViewer\Login Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir\setting\modules\ChromiumViewer\Default\Login Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir5\setting\modules\ChromiumViewer\User Data\Default\Login Data
19/10/2019 - 2:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir5\setting\modules\ChromiumViewer\User Data\Default\Web Data
19/10/2019 - 2:45:43.309Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 2:45:43.309Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 2:45:43.309Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.309Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.309Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.309Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.309Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.309Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.309Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.325Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.325Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.372Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir5\setting\modules\ChromiumViewer\Login Data
19/10/2019 - 2:45:43.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir5\setting\modules\ChromiumViewer\Default\Login Data
19/10/2019 - 2:45:43.372Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.372Open2476C:\Monitor\procmgr.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 2:45:43.372Unknown2476C:\Monitor\procmgr.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 2:45:43.387Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.387Open2476C:\Monitor\procmgr.exeC:\Monitor\Files\DeletedFiles
19/10/2019 - 2:45:43.387Delete2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.387Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.387Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM2DB.tmp
19/10/2019 - 2:45:43.387Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 2:45:43.387Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 2:45:43.387Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.387Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.387Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.387Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.387Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.387Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.387Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.387Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.387Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.387Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.387Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.403Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\QupZilla\profiles\default\browsedata.db
19/10/2019 - 2:45:43.403Open1488C:\Monitor\proc.exeC:\Monitor\vaultcli.dll
19/10/2019 - 2:45:43.403Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\vaultcli.dll
19/10/2019 - 2:45:43.403Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\vaultcli.dll
19/10/2019 - 2:45:43.403Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.403Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.403Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.403Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.403Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.403Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.403Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.403Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.403Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.403Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.403Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.403Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.450Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.450Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.450Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.450Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.450Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.450Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:43.450Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.450Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.450Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.450Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.497Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.543Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.543Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.543Open2476C:\Monitor\procmgr.exeC:\Monitor\Files\DeletedFiles
19/10/2019 - 2:45:43.543Delete2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.543Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.543Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM32A.tmp
19/10/2019 - 2:45:43.543Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer
19/10/2019 - 2:45:43.543Unknown2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer
19/10/2019 - 2:45:43.590Open2476C:\Monitor\procmgr.exeC:\Program
19/10/2019 - 2:45:43.590Open2476C:\Monitor\procmgr.exeC:\Program.exe
19/10/2019 - 2:45:43.590Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet
19/10/2019 - 2:45:43.590Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet.exe
19/10/2019 - 2:45:43.590Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.590Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.590Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.590Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:43.590Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:43.590Unknown2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf
19/10/2019 - 2:45:43.590Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pfIEXPLORE.EXE-908C99F8.pf
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exe\Device\HarddiskVolume2
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 2:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dllapisetschema.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\KernelBase.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\KernelBase.dllKernelBase.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\gdi32.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\gdi32.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\lpk.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\lpk.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\usp10.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\usp10.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msvcrt.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msvcrt.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dllapi-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\advapi32.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\advapi32.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcrt4.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcrt4.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shell32.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shell32.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shlwapi.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shlwapi.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\iertutil.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\iertutil.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dllapi-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dllapi-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dllapi-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\normaliz.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\normaliz.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dllapi-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msctf.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msctf.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dllcryptbase.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ole32.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ole32.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaut32.dll
19/10/2019 - 2:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaut32.dll
19/10/2019 - 2:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\comdlg32.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\comdlg32.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\urlmon.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\urlmon.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dllapi-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wininet.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wininet.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\userenv.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\userenv.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\profapi.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\profapi.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ws2_32.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ws2_32.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nsi.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nsi.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\clbcatq.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\clbcatq.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\crypt32.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\crypt32.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msasn1.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msasn1.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RECOVERYSTORE.{6C9E6232-4F1A-11E8-8B8A-525400842A13}.DAT
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF31E8A27AA33A1DCA.TMP
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.dat
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dllExplorerFrame.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{6C9E6234-4F1A-11E8-8B8A-525400842A13}.DAT
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF96115008492A9D98.TMP
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.dbcversions.2.db
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 2:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 2:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dll
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 2:45:43.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 2:45:43.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 2:45:43.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 2:45:43.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 2:45:43.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 2:45:43.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.dat
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:43.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\setupapi.dll
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\setupapi.dll
19/10/2019 - 2:45:43.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cfgmgr32.dll
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cfgmgr32.dll
19/10/2019 - 2:45:43.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\devobj.dll
19/10/2019 - 2:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\devobj.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\comdlg32.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 2:45:43.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 2:45:43.653Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 2:45:43.653Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 2:45:43.653Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 2:45:43.653Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 2:45:43.653Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 2:45:43.653Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 2:45:43.653Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 2:45:43.653Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.dbcversions.2.db
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dllapisetschema.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\KernelBase.dllKernelBase.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\gdi32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\lpk.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\usp10.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msvcrt.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dllapi-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\advapi32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcrt4.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shell32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shlwapi.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\iertutil.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dllapi-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dllapi-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dllapi-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\normaliz.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dllapi-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msctf.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dllcryptbase.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ole32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaut32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\urlmon.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dllapi-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wininet.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\userenv.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\profapi.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ws2_32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nsi.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\clbcatq.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\crypt32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msasn1.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dllExplorerFrame.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\setupapi.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cfgmgr32.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\devobj.dll
19/10/2019 - 2:45:43.668Unknown344C:\Program Files\Internet Explorer\iexplore.exe\Device\HarddiskVolume2
19/10/2019 - 2:45:43.668Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Monitor
19/10/2019 - 2:45:43.668Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 2:45:43.668Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\version.DLL
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 2:45:43.684Unknown2476C:\Monitor\procmgr.exeC:\Windows
19/10/2019 - 2:45:43.684Unknown2476C:\Monitor\procmgr.exeC:\Monitor
19/10/2019 - 2:45:43.684Unknown2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\CRYPTBASE.DLL
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dllcryptbase.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dllcryptbase.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEFRAME.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe.Local
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe.Local
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.684Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.700Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 2:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 2:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 2:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 2:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 2:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 2:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\dwmapi.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 2:45:43.762Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\Secur32.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\SSPICLI.DLL
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:43.762Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:43.762Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:43.762Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:43.762Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:43.778Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 2:45:43.778Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 2:45:43.778Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 2:45:43.778Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 2:45:43.778Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 2:45:43.778Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:43.778Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:43.778Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:43.778Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:43.778Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IPHLPAPI.DLL
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\WINNSI.DLL
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 2:45:43.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 2:45:43.872Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 2:45:43.872Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 2:45:43.872Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 2:45:43.872Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\CRYPTSP.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\RpcRtRemote.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dll
19/10/2019 - 2:45:44.12Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 2:45:44.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dll
19/10/2019 - 2:45:44.12Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\suspend.dll
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.bin
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.binurlblocklist.bin
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.bin
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.binurlblocklist.bin
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Monitor
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 2:45:44.153Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 2:45:44.153Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Adobe\Flash Player\NativeCache
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Adobe\Flash Player\NativeCache
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Tracking Protection
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Tracking Protection
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Feeds
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Feeds
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\PlayReady
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\PlayReady
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 2:45:44.168Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 2:45:44.168Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\History.IE5
19/10/2019 - 2:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\History.IE5
19/10/2019 - 2:45:44.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera
19/10/2019 - 2:45:44.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\.purple\accounts.xml
19/10/2019 - 2:45:44.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:44.215Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:44.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\SuperPutty
19/10/2019 - 2:45:44.215Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FTPShell\ftpshell.fsi
19/10/2019 - 2:45:44.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Notepad++\plugins\config\NppFTP\NppFTP.xml
19/10/2019 - 2:45:44.215Open1488C:\Monitor\proc.exeC:\Program Files (x86)\oZone3D\MyFTP\myftp.ini
19/10/2019 - 2:45:44.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTPBox\profiles.conf
19/10/2019 - 2:45:44.215Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Sherrod Computers\sherrod FTP\favorites
19/10/2019 - 2:45:44.231Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FTP Now\sites.xml
19/10/2019 - 2:45:44.231Open1488C:\Monitor\proc.exeC:\Program Files (x86)\NexusFile\userdata\ftpsite.ini
19/10/2019 - 2:45:44.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NexusFile\ftpsite.ini
19/10/2019 - 2:45:44.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\NetSarang\Xftp\Sessions
19/10/2019 - 2:45:44.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NetSarang\Xftp\Sessions
19/10/2019 - 2:45:44.231Open1488C:\Monitor\proc.exeC:\Program Files (x86)\EasyFTP\data
19/10/2019 - 2:45:44.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\SftpNetDrive
19/10/2019 - 2:45:44.231Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP7\encPwd.jsd
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\DNSAPI.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\NETAPI32.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\netutils.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\srvcli.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\wkscli.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 2:45:44.309Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP7\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP7\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP8\encPwd.jsd
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP8\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP8\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP9\encPwd.jsd
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP9\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP9\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP10\encPwd.jsd
19/10/2019 - 2:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP10\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP10\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP11\encPwd.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP11\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP11\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP12\encPwd.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP12\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP12\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP13\encPwd.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP13\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP13\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP14\encPwd.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP14\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP14\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp7\encPwd.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp7\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp7\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp8\encPwd.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp8\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp8\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.356Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp9\encPwd.jsd
19/10/2019 - 2:45:44.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\rasadhlp.dll
19/10/2019 - 2:45:44.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 2:45:44.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 2:45:44.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEUI.dll
19/10/2019 - 2:45:44.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 2:45:44.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 2:45:44.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:44.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp9\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp9\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp10\encPwd.jsd
19/10/2019 - 2:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp10\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp10\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp11\encPwd.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp11\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp11\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp12\encPwd.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp12\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp12\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp13\encPwd.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp13\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp13\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp14\encPwd.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp14\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp14\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize7\encPwd.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize7\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize7\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize8\encPwd.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize8\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize8\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.450Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize9\encPwd.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize9\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize9\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize10\encPwd.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize10\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize10\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize11\encPwd.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize11\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize11\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize12\encPwd.jsd
19/10/2019 - 2:45:44.512Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize12\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize12\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize13\encPwd.jsd
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize13\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize13\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize14\encPwd.jsd
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize14\data\settings\sshProfiles-j.jsd
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize14\data\settings\ftpProfiles-j.jsd
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Cyberduck
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\iterate_GmbH
19/10/2019 - 2:45:44.528Open1488C:\Monitor\proc.exeC:\Users\Behemot
19/10/2019 - 2:45:44.528Unknown1488C:\Monitor\proc.exeC:\Users\Behemot
19/10/2019 - 2:45:44.543Open1488C:\Monitor\proc.exeC:\Users\Behemot\.config\fullsync\profiles.xml
19/10/2019 - 2:45:44.543Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTPInfo\ServerList.xml
19/10/2019 - 2:45:44.543Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTPInfo\ServerList.cfg
19/10/2019 - 2:45:44.543Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FileZilla\Filezilla.xml
19/10/2019 - 2:45:44.543Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FileZilla\filezilla.xml
19/10/2019 - 2:45:44.543Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FileZilla\recentservers.xml
19/10/2019 - 2:45:44.543Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FileZilla\sitemanager.xml
19/10/2019 - 2:45:44.543Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Staff-FTP\sites.ini
19/10/2019 - 2:45:44.543Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\BlazeFtp\site.dat
19/10/2019 - 2:45:44.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 2:45:44.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 2:45:44.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:44.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:44.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:44.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.606Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.606Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Fastream NETFile\My FTP Links
19/10/2019 - 2:45:44.606Open1488C:\Monitor\proc.exeC:\Program Files (x86)\GoFTP\settings\Connections.txt
19/10/2019 - 2:45:44.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Estsoft\ALFTP\ESTdb2.dat
19/10/2019 - 2:45:44.606Open1488C:\Monitor\proc.exeC:\Program Files (x86)\DeluxeFTP\sites.xml
19/10/2019 - 2:45:44.622Open1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 2:45:44.622Unknown1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 2:45:44.622Open1488C:\Monitor\proc.exeC:\Windows\wcx_ftp.ini
19/10/2019 - 2:45:44.622Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\wcx_ftp.ini
19/10/2019 - 2:45:44.622Open1488C:\Monitor\proc.exeC:\Users\Behemot\wcx_ftp.ini
19/10/2019 - 2:45:44.622Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\GHISLER\wcx_ftp.ini
19/10/2019 - 2:45:44.622Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FTPGetter\Profile\servers.xml
19/10/2019 - 2:45:44.622Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTPGetter\servers.xml
19/10/2019 - 2:45:44.622Open1488C:\Monitor\proc.exeC:\Program Files (x86)\WS_FTP\WS_FTP.INI
19/10/2019 - 2:45:44.637Open1488C:\Monitor\proc.exeC:\Windows\WS_FTP.INI
19/10/2019 - 2:45:44.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Ipswitch
19/10/2019 - 2:45:44.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\site.xml
19/10/2019 - 2:45:44.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.747Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:44.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\ExpanDrive
19/10/2019 - 2:45:44.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\ExpanDrive
19/10/2019 - 2:45:44.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Steed\bookmarks.txt
19/10/2019 - 2:45:44.762Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FlashFXP
19/10/2019 - 2:45:44.762Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FlashFXP
19/10/2019 - 2:45:44.762Open1488C:\Monitor\proc.exeC:\ProgramData
19/10/2019 - 2:45:44.762Unknown1488C:\Monitor\proc.exeC:\ProgramData
19/10/2019 - 2:45:44.762Open1488C:\Monitor\proc.exeC:\ProgramData\FlashFXP
19/10/2019 - 2:45:44.762Open1488C:\Monitor\proc.exeC:\ProgramData\FlashFXP
19/10/2019 - 2:45:44.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.dat
19/10/2019 - 2:45:44.825Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 2:45:44.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shell32.dll
19/10/2019 - 2:45:44.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe.Local
19/10/2019 - 2:45:44.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 2:45:44.825Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 2:45:44.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 2:45:44.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\apphelp.dll
19/10/2019 - 2:45:44.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 2:45:44.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 2:45:44.825Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-core-winrt-string-l1-1-0.dll
19/10/2019 - 2:45:44.840Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dll
19/10/2019 - 2:45:44.840Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 2:45:44.840Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dll
19/10/2019 - 2:45:44.840Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 2:45:44.840Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 2:45:44.840Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 2:45:44.840Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\OLEACCRC.DLL
19/10/2019 - 2:45:44.840Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 2:45:44.840Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 2:45:44.856Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dll
19/10/2019 - 2:45:44.856Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dllExplorerFrame.dll
19/10/2019 - 2:45:44.856Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dll
19/10/2019 - 2:45:44.856Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dllExplorerFrame.dll
19/10/2019 - 2:45:44.856Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 2:45:44.856Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 2:45:44.856Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 2:45:44.856Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 2:45:44.856Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 2:45:44.856Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\INSoftware\NovaFTP\NovaFTP.db
19/10/2019 - 2:45:44.856Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NetDrive\NDSites.ini
19/10/2019 - 2:45:44.856Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NetDrive2\drives.dat
19/10/2019 - 2:45:44.856Open1488C:\Monitor\proc.exeC:\ProgramData\NetDrive2\drives.dat
19/10/2019 - 2:45:44.856Open1488C:\Monitor\proc.exeC:\Windows\wcx_ftp.ini
19/10/2019 - 2:45:44.856Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\wcx_ftp.ini
19/10/2019 - 2:45:44.872Open1488C:\Monitor\proc.exeC:\Users\Behemot\wcx_ftp.ini
19/10/2019 - 2:45:44.872Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\GHISLER\wcx_ftp.ini
19/10/2019 - 2:45:44.872Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\SmartFTP
19/10/2019 - 2:45:44.872Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Far Manager\Profile\PluginsData\42E4AEB1-A230-44F4-B33C-F195BB654931.db
19/10/2019 - 2:45:44.918Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.918Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.918Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.918Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.918Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.918Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.918Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.918Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.918Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.918Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\PROPSYS.dll
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 2:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-core-winrt-string-l1-1-0.dll
19/10/2019 - 2:45:44.934Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\MSIMG32.dll
19/10/2019 - 2:45:44.934Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 2:45:44.934Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 2:45:44.934Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.934Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:44.934Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.934Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.934Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.934Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.934Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.934Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:44.934Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:44.934Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:44.981Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:44.981Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:45.28Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.28Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.43Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.43Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.43Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:45.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\en\IEXPLORE.EXE.mui
19/10/2019 - 2:45:45.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.43Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.43Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.43Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.43Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Prefetch\IEXPLORE.EXE-4B6C9213.pf
19/10/2019 - 2:45:45.106Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Prefetch\IEXPLORE.EXE-4B6C9213.pfIEXPLORE.EXE-4B6C9213.pf
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exe\Device\HarddiskVolume2
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:45.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 2:45:45.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dllapisetschema.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\KernelBase.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\KernelBase.dllKernelBase.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msvcrt.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msvcrt.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dllapi-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\advapi32.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\advapi32.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcrt4.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcrt4.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sspicli.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sspicli.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptbase.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptbase.dllcryptbase.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\iertutil.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\iertutil.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dllapi-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dllapi-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\user32.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\user32.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gdi32.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gdi32.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\lpk.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\lpk.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\usp10.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\usp10.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dllapi-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\normaliz.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\normaliz.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 2:45:45.122Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dllapi-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 2:45:45.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shlwapi.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shlwapi.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaut32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaut32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\comdlg32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\comdlg32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dllapi-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\userenv.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\userenv.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\profapi.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\profapi.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\urlmon.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\urlmon.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ws2_32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ws2_32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nsi.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nsi.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\clbcatq.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\clbcatq.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dllbcryptprimitives.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\setupapi.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\setupapi.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cfgmgr32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cfgmgr32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\devobj.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\devobj.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wintrust.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wintrust.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\crypt32.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\crypt32.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msasn1.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msasn1.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8CS2PRM4.txt
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8CS2PRM4.txt
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 2:45:45.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 2:45:45.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 2:45:45.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.153Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\mSecure
19/10/2019 - 2:45:45.153Open1488C:\Monitor\proc.exeC:\ProgramData\Syncovery
19/10/2019 - 2:45:45.153Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FreshWebmaster\FreshFTP\FtpSites.SMF
19/10/2019 - 2:45:45.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\BitKinex\bitkinex.ds
19/10/2019 - 2:45:45.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\UltraFXP\sites.xml
19/10/2019 - 2:45:45.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTP Now\sites.xml
19/10/2019 - 2:45:45.153Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Odin Secure FTP Expert\QFDefault.QFQ
19/10/2019 - 2:45:45.168Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Odin Secure FTP Expert\SiteInfo.QFP
19/10/2019 - 2:45:45.168Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Foxmail\mail
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dllp2pcollab.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wldap32.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wldap32.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E046BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E046BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\BCFED8GC.TXT
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\I6P0K07S.TXT
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\PT-BR[1].HTM
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gif
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gife151e5[1].gif
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kvzy[1].png
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kvzy[1].pngBB1kvzy[1].png
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAwBbg7[1].jpg
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAwBbg7[1].jpgAAwBbg7[1].jpg
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAv4RrG[1].jpg
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAv4RrG[1].jpgAAv4RrG[1].jpg
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAwGL0I[1].jpg
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAwGL0I[1].jpgAAwGL0I[1].jpg
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].png
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MIiC[1].png
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MIiC[1].pngBB8MIiC[1].png
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\b8-2f3a4c-4b5f58d3[1].css
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\b8-2f3a4c-4b5f58d3[1].cssb8-2f3a4c-4b5f58d3[1].css
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-System.dat
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-System.dat~FontCache-System.dat
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xml
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].js
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].js
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\41-e73167-68ddb2ab[1].js
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\41-e73167-68ddb2ab[1].js41-e73167-68ddb2ab[1].js
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-FontFace.dat
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-FontFace.dat~FontCache-FontFace.dat
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\segoeui.ttf
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\segoeui.ttf
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\c64c2a[1].woff
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\c64c2a[1].woffc64c2a[1].woff
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\jscript9.dll.mui
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\jscript9.dll.muijscript9.dll.mui
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S4OWK0RR.txt
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S4OWK0RR.txt
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\OLU3XFVE.txt
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\OLU3XFVE.txt
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\times.ttf
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\times.ttf
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B45457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B45457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C775080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C775080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 2:45:45.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 2:45:45.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\990861[1].svg
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\990861[1].svg990861[1].svg
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA2JbD3[1].png
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA2JbD3[1].pngAA2JbD3[1].png
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Z075FCUF.TXT
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\24-3b1d5e-68ddb2ab[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\24-3b1d5e-68ddb2ab[1].js24-3b1d5e-68ddb2ab[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\chartbeat[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\chartbeat[1].jschartbeat[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\209I53WF.TXT
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\KKO6BXU4.TXT
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\W15N7ZSW.TXT
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8IX7DPVU.TXT
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAnimation.dll
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAnimation.dllUIAnimation.dll
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\VMNAML7Z.TXT
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA3jsXa[1].png
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA3jsXa[1].pngAA3jsXa[1].png
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BBqgb7K[1].png
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BBqgb7K[1].pngBBqgb7K[1].png
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAwGgve[1].jpg
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAwGgve[1].jpgAAwGgve[1].jpg
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAgPBML[1].png
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAgPBML[1].pngAAgPBML[1].png
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\MSNIdSync[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\MSNIdSync[1].jsMSNIdSync[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\br_msn_home_vitrine[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\br_msn_home_vitrine[1].jsbr_msn_home_vitrine[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD67423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD67423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0EA9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0EA9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5ABEDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5ABEDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\br_msn_home_vitrine.cfg[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\br_msn_home_vitrine.cfg[1].jsbr_msn_home_vitrine.cfg[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\aep-formats-20.14.0.min[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\aep-formats-20.14.0.min[1].jsaep-formats-20.14.0.min[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\59c177f5d970c300041220e2.tpl.min[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\59c177f5d970c300041220e2.tpl.min[1].js59c177f5d970c300041220e2.tpl.min[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\TaboolaCookieSyncScript[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\TaboolaCookieSyncScript[1].jsTaboolaCookieSyncScript[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE46BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE46BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\59c177f5d970c300041220e2[1].css
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\59c177f5d970c300041220e2[1].css59c177f5d970c300041220e2[1].css
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\58b810[1].gif
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\58b810[1].gif58b810[1].gif
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\msn[1].htm
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\msn[1].htmmsn[1].htm
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\publishertag[1].js
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\publishertag[1].jspublishertag[1].js
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\SILENTPASSPORT[1].HTM
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\FZP5WLKE.TXT
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.cat
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\c08e43[1].jpg
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\c08e43[1].jpgc08e43[1].jpg
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecsExt.dll
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecsExt.dllWindowsCodecsExt.dll
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6.dll
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6.dll
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\KernelBase.dll.mui
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\KernelBase.dll.muiKernelBase.dll.mui
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6r.dll
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6r.dll
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\865070[1].jpg
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\865070[1].jpg865070[1].jpg
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8bd8bf[1].jpg
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8bd8bf[1].jpg8bd8bf[1].jpg
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8adb60[1].jpg
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8adb60[1].jpg8adb60[1].jpg
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\undefined[1].png
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\undefined[1].pngundefined[1].png
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784660[1].jpg
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784660[1].jpg784660[1].jpg
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784659[1].jpg
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784659[1].jpg784659[1].jpg
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784663[1].jpg
19/10/2019 - 2:45:45.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784663[1].jpg784663[1].jpg
19/10/2019 - 2:45:45.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784658[1].jpg
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784658[1].jpg784658[1].jpg
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\async_usersync[1].htm
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\async_usersync[1].htmasync_usersync[1].htm
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\beacon[1].js
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\beacon[1].jsbeacon[1].js
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\ASYNC_USERSYNC[1].JS
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\VP5UL7J7.TXT
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\9LD3P0Y8.TXT
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\19O5P9C0.txt
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\19O5P9C0.txt
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\X0AL0GS5.TXT
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\6SGKN470.TXT
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8IS70EJY.txt
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8IS70EJY.txt
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\QSML[2].XML
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\QSML[3].XML
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA41099915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA41099915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.cat
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\QSML[6].XML
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GRO8Z4YG.txt
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GRO8Z4YG.txt
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\D3LNK60R.txt
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\D3LNK60R.txt
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\TOEJ0U6L.TXT
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.tlb
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.tlb
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAutomationCore.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAutomationCore.dllUIAutomationCore.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\psapi.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\psapi.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\C_20127.NLS
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\C_20127.NLS
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wpc.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wpc.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wevtapi.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wevtapi.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
19/10/2019 - 2:45:45.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.dbcversions.2.db
19/10/2019 - 2:45:45.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 2:45:45.293Open1488C:\Monitor\proc.exeC:\
19/10/2019 - 2:45:45.293Unknown1488C:\Monitor\proc.exeC:\
19/10/2019 - 2:45:45.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Pocomail\accounts.ini
19/10/2019 - 2:45:45.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\Pocomail\accounts.ini
19/10/2019 - 2:45:45.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\GmailNotifierPro\ConfigData.xml
19/10/2019 - 2:45:45.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\DeskSoft\CheckMail
19/10/2019 - 2:45:45.293Open1488C:\Monitor\proc.exeC:\Program Files (x86)\WinFtp Client\Favorites.dat
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\VCREDIST_X86[1].EXE
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\vcredist_x64.exe
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\vcredist_x64.exe
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\vcredist_x86.exe
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\vcredist_x86.exe
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\2RMLHNN7.TXT
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\V1[1].HTM
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\style[1].css
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\style[1].cssstyle[1].css
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\bing-search-logo[1].png
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\bing-search-logo[1].pngbing-search-logo[1].png
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[1].js
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[1].jsscript[1].js
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\click-run_pt-br[1].jpg
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\click-run_pt-br[1].jpgclick-run_pt-br[1].jpg
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[2].js
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[2].jsscript[2].js
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24BB398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24BB398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\1715500327[1].js
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\1715500327[1].js1715500327[1].js
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\jquery-1.8.3.min[1].js
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\jquery-1.8.3.min[1].jsjquery-1.8.3.min[1].js
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W\www.microsoft[1].xml
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W\www.microsoft[1].xmlwww.microsoft[1].xml
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0A8EFV2Z.TXT
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\5DWWY1IU.TXT
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0RSIIBM3.TXT
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\MYD0W1QU.TXT
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mfplat.dll
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mfplat.dll
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\avrt.dll
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\avrt.dll
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[1].eot
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[1].eotlatest[1].eot
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[2].eot
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[2].eotlatest[2].eot
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtmlmedia.dll
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtmlmedia.dllmshtmlmedia.dll
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mf.dll
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mf.dll
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\atl.dll
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\atl.dll
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ksuser.dll
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ksuser.dll
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\t2embed.dll
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\t2embed.dll
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisb.ttf
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisb.ttf
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\latest[1].eot
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\latest[1].eotlatest[1].eot
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\search_icon[1].png
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\search_icon[1].pngsearch_icon[1].png
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\micross.ttf
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\micross.ttf
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\ie[1].png
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\ie[1].pngie[1].png
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\yellow-arrow[1].png
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\yellow-arrow[1].pngyellow-arrow[1].png
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\Bing[1].png
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\Bing[1].pngBing[1].png
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\windowsupdate[1].png
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\windowsupdate[1].pngwindowsupdate[1].png
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\LIKE[1].HTM
19/10/2019 - 2:45:45.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\xfLjhe25qYs[1].js
19/10/2019 - 2:45:45.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\xfLjhe25qYs[1].jsxfLjhe25qYs[1].js
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.cat
19/10/2019 - 2:45:45.372Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAutomationCore.dllUIAutomationCore.dll
19/10/2019 - 2:45:45.387Open1488C:\Monitor\proc.exeC:\Windows\32BitFtp.TMP
19/10/2019 - 2:45:45.387Open1488C:\Monitor\proc.exeC:\Windows\32BitFtp.ini
19/10/2019 - 2:45:45.387Open1488C:\Monitor\proc.exeC:\FTP Navigator\Ftplist.txt
19/10/2019 - 2:45:45.387Open1488C:\Monitor\proc.exeC:\Softwarenetz\Mailing\Daten\mailing.vdt
19/10/2019 - 2:45:45.387Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Mail\Opera Mail\wand.dat
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8CS2PRM4.txt
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E046BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E046BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gife151e5[1].gif
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kvzy[1].pngBB1kvzy[1].png
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAwBbg7[1].jpgAAwBbg7[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAv4RrG[1].jpgAAv4RrG[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAwGL0I[1].jpgAAwGL0I[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MIiC[1].pngBB8MIiC[1].png
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\b8-2f3a4c-4b5f58d3[1].cssb8-2f3a4c-4b5f58d3[1].css
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-System.dat~FontCache-System.dat
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\41-e73167-68ddb2ab[1].js41-e73167-68ddb2ab[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-FontFace.dat~FontCache-FontFace.dat
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\segoeui.ttf
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\c64c2a[1].woffc64c2a[1].woff
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\jscript9.dll.muijscript9.dll.mui
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S4OWK0RR.txt
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\OLU3XFVE.txt
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\times.ttf
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B45457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B45457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C775080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C775080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\990861[1].svg990861[1].svg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA2JbD3[1].pngAA2JbD3[1].png
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\24-3b1d5e-68ddb2ab[1].js24-3b1d5e-68ddb2ab[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\chartbeat[1].jschartbeat[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA3jsXa[1].pngAA3jsXa[1].png
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BBqgb7K[1].pngBBqgb7K[1].png
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAwGgve[1].jpgAAwGgve[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAgPBML[1].pngAAgPBML[1].png
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\MSNIdSync[1].jsMSNIdSync[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\br_msn_home_vitrine[1].jsbr_msn_home_vitrine[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD67423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD67423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0EA9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0EA9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5ABEDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5ABEDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\br_msn_home_vitrine.cfg[1].jsbr_msn_home_vitrine.cfg[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\aep-formats-20.14.0.min[1].jsaep-formats-20.14.0.min[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\59c177f5d970c300041220e2.tpl.min[1].js59c177f5d970c300041220e2.tpl.min[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\TaboolaCookieSyncScript[1].jsTaboolaCookieSyncScript[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE46BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE46BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\59c177f5d970c300041220e2[1].css59c177f5d970c300041220e2[1].css
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\58b810[1].gif58b810[1].gif
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\msn[1].htmmsn[1].htm
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\publishertag[1].jspublishertag[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\c08e43[1].jpgc08e43[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\KernelBase.dll.muiKernelBase.dll.mui
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6r.dll
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\865070[1].jpg865070[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8bd8bf[1].jpg8bd8bf[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8adb60[1].jpg8adb60[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\undefined[1].pngundefined[1].png
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784660[1].jpg784660[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784659[1].jpg784659[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784663[1].jpg784663[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784658[1].jpg784658[1].jpg
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\async_usersync[1].htmasync_usersync[1].htm
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\beacon[1].jsbeacon[1].js
19/10/2019 - 2:45:45.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\19O5P9C0.txt
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8IS70EJY.txt
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA41099915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA41099915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GRO8Z4YG.txt
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\D3LNK60R.txt
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.tlb
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\C_20127.NLS
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.dbcversions.2.db
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\vcredist_x64.exe
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\vcredist_x86.exe
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\style[1].cssstyle[1].css
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\bing-search-logo[1].pngbing-search-logo[1].png
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[1].jsscript[1].js
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\click-run_pt-br[1].jpgclick-run_pt-br[1].jpg
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[2].jsscript[2].js
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24BB398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24BB398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\1715500327[1].js1715500327[1].js
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\jquery-1.8.3.min[1].jsjquery-1.8.3.min[1].js
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W\www.microsoft[1].xmlwww.microsoft[1].xml
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[1].eotlatest[1].eot
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[2].eotlatest[2].eot
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisb.ttf
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\latest[1].eotlatest[1].eot
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\search_icon[1].pngsearch_icon[1].png
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\micross.ttf
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\ie[1].pngie[1].png
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\yellow-arrow[1].pngyellow-arrow[1].png
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\Bing[1].pngBing[1].png
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\windowsupdate[1].pngwindowsupdate[1].png
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\xfLjhe25qYs[1].jsxfLjhe25qYs[1].js
19/10/2019 - 2:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.481Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.481Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.481Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\yMail2\POP3.xml
19/10/2019 - 2:45:45.481Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\yMail2\SMTP.xml
19/10/2019 - 2:45:45.481Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\yMail2\Accounts.xml
19/10/2019 - 2:45:45.481Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\yMail\ymail.ini
19/10/2019 - 2:45:45.497Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\TrulyMail\Data\Settings\user.config
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dllapisetschema.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\KernelBase.dllKernelBase.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msvcrt.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dllapi-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\advapi32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcrt4.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sspicli.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptbase.dllcryptbase.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\iertutil.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dllapi-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dllapi-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\user32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gdi32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\lpk.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\usp10.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dllapi-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\normaliz.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dllapi-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shlwapi.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaut32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\comdlg32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dllapi-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\userenv.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\profapi.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\urlmon.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ws2_32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nsi.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\clbcatq.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dllbcryptprimitives.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\setupapi.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cfgmgr32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\devobj.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wintrust.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\crypt32.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msasn1.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 2:45:45.497Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dllp2pcollab.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wldap32.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAnimation.dllUIAnimation.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecsExt.dllWindowsCodecsExt.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\psapi.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wpc.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wevtapi.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mfplat.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\avrt.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtmlmedia.dllmshtmlmedia.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mf.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\atl.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ksuser.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\t2embed.dll
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exe\Device\HarddiskVolume2
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64log.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 2:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\version.DLL
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 2:45:45.528Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.528Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 2:45:45.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 2:45:45.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:45.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:45.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:45.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:45.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 2:45:45.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEFRAME.dll
19/10/2019 - 2:45:45.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:45.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE.Local
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE.Local
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcss.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcss.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 2:45:45.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 2:45:45.559Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.559Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.559Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\To-Do DeskList\tasks.db
19/10/2019 - 2:45:45.559Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\stickies\images
19/10/2019 - 2:45:45.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\stickies\rtf
19/10/2019 - 2:45:45.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NoteFly\notes
19/10/2019 - 2:45:45.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Conceptworld\Notezilla\Notes8.db
19/10/2019 - 2:45:45.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Sticky Notes\StickyNotes.snt
19/10/2019 - 2:45:45.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.575Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\Secur32.dll
19/10/2019 - 2:45:45.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 2:45:45.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 2:45:45.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:45.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:45.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:45.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:45.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:45.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:45.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 2:45:45.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 2:45:45.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 2:45:45.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 2:45:45.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 2:45:45.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 2:45:45.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.590Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.590Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IPHLPAPI.DLL
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\WINNSI.DLL
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 2:45:45.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 2:45:45.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.715Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.715Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 2:45:45.715Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.715Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\CRYPTSP.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\RpcRtRemote.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dll
19/10/2019 - 2:45:45.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 2:45:45.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dll
19/10/2019 - 2:45:45.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 2:45:45.762Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.762Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 2:45:45.762Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\Enpass
19/10/2019 - 2:45:45.825Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\My RoboForm Data
19/10/2019 - 2:45:45.825Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\1Password
19/10/2019 - 2:45:45.825Open1488C:\Monitor\proc.exeC:\Monitor\Mikrotik\Winbox
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Monitor\NETAPI32.DLL
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\netapi32.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\netapi32.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Monitor\netutils.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Monitor\srvcli.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\srvcli.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\srvcli.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Monitor\wkscli.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\wkscli.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\wkscli.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Monitor\SAMCLI.DLL
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Monitor\SAMLIB.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:45.840Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:45.840Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:45.840Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:45.840Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:45.840Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:45.840Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:45.840Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:45.840Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:45.856Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Monitor\DNSAPI.dll
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Monitor\IPHLPAPI.DLL
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Monitor\WINNSI.DLL
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 2:45:45.856Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\dwmapi.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 2:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\bcrypt.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dll
19/10/2019 - 2:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dllbcryptprimitives.dll
19/10/2019 - 2:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dll
19/10/2019 - 2:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dllbcryptprimitives.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\MSHTML.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\d2d1.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\DWrite.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\dxgi.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\DXGIDebug.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DXGIDebug.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DXGIDebug.dll
19/10/2019 - 2:45:46.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE.Local
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\apphelp.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\MLANG.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\PROPSYS.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:46.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:46.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:46.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:46.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:46.90Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:46.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\History.IE5
19/10/2019 - 2:45:46.90Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\History.IE5
19/10/2019 - 2:45:46.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\DNSAPI.dll
19/10/2019 - 2:45:46.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 2:45:46.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 2:45:46.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 2:45:46.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 2:45:46.387Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\dhcpcsvc6.DLL
19/10/2019 - 2:45:46.387Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dll
19/10/2019 - 2:45:46.387Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 2:45:46.387Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dll
19/10/2019 - 2:45:46.387Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 2:45:46.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\dhcpcsvc.DLL
19/10/2019 - 2:45:46.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 2:45:46.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 2:45:46.809Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:46.809Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:46.809Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:46.809Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:46.809Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:46.809Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:46.809Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:46.809Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:46.809Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:46.856Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\TZGFZZAN.txt
19/10/2019 - 2:45:46.856Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\TZGFZZAN.txt
19/10/2019 - 2:45:46.856Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3L3U065O.txt
19/10/2019 - 2:45:46.856Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3L3U065O.txt
19/10/2019 - 2:45:46.856Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 2:45:46.856Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 2:45:46.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\rasadhlp.dll
19/10/2019 - 2:45:46.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 2:45:46.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 2:45:47.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEUI.dll
19/10/2019 - 2:45:47.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 2:45:47.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 2:45:47.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\MLANG.dll
19/10/2019 - 2:45:47.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 2:45:47.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 2:45:47.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\SXS.DLL
19/10/2019 - 2:45:47.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 2:45:47.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 2:45:47.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:47.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 2:45:47.90Open344C:\Program Files\Internet Explorer\iexplore.exeC:\
19/10/2019 - 2:45:47.90Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x0000000000000000.db
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:47.106Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:47.106Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 2:45:47.106Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 2:45:47.106Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 2:45:47.106Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\iconcache
19/10/2019 - 2:45:47.106Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.106Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:47.122Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:47.122Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 2:45:47.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 2:45:47.122Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\url.dll
19/10/2019 - 2:45:47.122Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\url.dll
19/10/2019 - 2:45:47.122Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\url.dll
19/10/2019 - 2:45:47.122Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-core-winrt-string-l1-1-0.dll
19/10/2019 - 2:45:47.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 2:45:47.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:47.122Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF6C391EDD3F97572A.TMP~DF6C391EDD3F97572A.TMP
19/10/2019 - 2:45:47.122Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{5400BC08-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:47.122Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFEFA57A36382E0B94.TMP~DFEFA57A36382E0B94.TMP
19/10/2019 - 2:45:47.122Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.122Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat{5400BC0A-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:47.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Monitor\rasadhlp.dll
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Write1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.293Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.293Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.293Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.293Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.293Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.309Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.309Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.309Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.309Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.309Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.325Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.325Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.325Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.325Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.325Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.325Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.325Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.325Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.372Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.372Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 2:45:47.372Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 2:45:47.372Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 2:45:47.387Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 2:45:47.387Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 2:45:47.434Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 2:45:47.434Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 2:45:47.434Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 2:45:47.434Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 2:45:47.434Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 2:45:47.434Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 2:45:47.481Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 2:45:47.481Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 2:45:47.481Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 2:45:47.481Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 2:45:47.481Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 2:45:47.481Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles
19/10/2019 - 2:45:47.481Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 2:45:47.481Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 2:45:47.497Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:47.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:47.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLDSYLJT.txt
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.512Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.512Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.512Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.512Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.512Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.512Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.512Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.512Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.528Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.528Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.528Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.528Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.528Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.528Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\12C6QOX6.txt
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0ETZ9S5A.txt
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htm
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE.Local
19/10/2019 - 2:45:47.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:47.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:47.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.590Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.590Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.590Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.590Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.590Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.590Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.606Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.606Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.606Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.606Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.606Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.606Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.622Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.622Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.622Open1488C:\Monitor\proc.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:47.622Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.622Unknown1488C:\Monitor\proc.exeC:\Monitor\proc.exe
19/10/2019 - 2:45:47.622Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.622Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.622Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.622Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.622Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.exe
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.exe
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.exe
19/10/2019 - 2:45:47.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 2:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.653Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.653Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.700Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.700Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.700Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.700Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.700Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.700Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.700Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.700Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.700Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 2:45:47.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 2:45:47.778Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.778Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.778Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.778Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.778Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.778Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.778Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.778Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.778Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.793Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.793Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.793Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.793Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.793Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.793Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 2:45:47.793Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.793Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 2:45:47.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 2:45:47.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 2:45:47.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 2:45:47.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 2:45:47.950Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:47.950Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 2:45:48.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 2:45:48.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 2:45:48.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].js
19/10/2019 - 2:45:48.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].js
19/10/2019 - 2:45:48.90Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 2:45:48.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].js
19/10/2019 - 2:45:48.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].js
19/10/2019 - 2:45:48.90Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 2:45:48.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gif
19/10/2019 - 2:45:48.106Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gife151e5[1].gif
19/10/2019 - 2:45:48.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:48.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:48.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:48.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:48.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:48.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 2:45:48.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 2:45:48.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 2:45:48.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].png
19/10/2019 - 2:45:48.122Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 2:45:48.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\OLEACC.DLL
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\OLEACCRC.DLL
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 2:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 2:45:48.200Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dll
19/10/2019 - 2:45:48.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 2:45:48.200Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dll
19/10/2019 - 2:45:48.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 2:45:48.200Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gife151e5[1].gif
19/10/2019 - 2:45:48.200Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\credssp.dll
19/10/2019 - 2:45:48.200Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 2:45:48.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 2:45:48.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 2:45:48.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 2:45:48.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 2:45:48.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.247Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].png
19/10/2019 - 2:45:48.247Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].pngBBNUXxq[1].png
19/10/2019 - 2:45:48.247Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].pngBBNUXxq[1].png
19/10/2019 - 2:45:48.247Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].pngBBNUXxq[1].png
19/10/2019 - 2:45:48.247Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].pngBBNUXxq[1].png
19/10/2019 - 2:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ncrypt.dll
19/10/2019 - 2:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 2:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 2:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\GPAPI.dll
19/10/2019 - 2:45:48.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 2:45:48.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 2:45:48.325Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 2:45:48.325Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 2:45:48.325Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 2:45:48.325Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.325Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAIZyiA[1].jpg
19/10/2019 - 2:45:48.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAIZyiA[1].jpgAAIZyiA[1].jpg
19/10/2019 - 2:45:48.325Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAIZyiA[1].jpgAAIZyiA[1].jpg
19/10/2019 - 2:45:48.325Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAIZyiA[1].jpgAAIZyiA[1].jpg
19/10/2019 - 2:45:48.325Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.325Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAISJqk[1].jpg
19/10/2019 - 2:45:48.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAISJqk[1].jpgAAISJqk[1].jpg
19/10/2019 - 2:45:48.325Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAISJqk[1].jpgAAISJqk[1].jpg
19/10/2019 - 2:45:48.325Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAISJqk[1].jpgAAISJqk[1].jpg
19/10/2019 - 2:45:48.325Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 2:45:48.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 2:45:48.325Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 2:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 2:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 2:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 2:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB1kKVy[1].png
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB1kKVy[1].pngBB1kKVy[1].png
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB1kKVy[1].pngBB1kKVy[1].png
19/10/2019 - 2:45:48.340Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB1kKVy[1].pngBB1kKVy[1].png
19/10/2019 - 2:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB1kKVy[1].pngBB1kKVy[1].png
19/10/2019 - 2:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.356Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.356Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.356Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.372Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.387Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.387Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.387Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.387Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.387Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.387Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.387Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.387Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 2:45:48.387Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 2:45:48.387Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AAIYstK[1].jpg
19/10/2019 - 2:45:48.387Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AAIYstK[1].jpgAAIYstK[1].jpg
19/10/2019 - 2:45:48.387Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AAIYstK[1].jpgAAIYstK[1].jpg
19/10/2019 - 2:45:48.387Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AAIYstK[1].jpgAAIYstK[1].jpg
19/10/2019 - 2:45:48.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dll
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dllp2pcollab.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dll
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dllp2pcollab.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\qagentrt.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\cryptnet.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_167DB4E3AB356C5B50FAA8944D554776
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0270780F846F08BEFE0DD8112D932FEF
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\SensApi.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 2:45:48.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 2:45:48.528Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 2:45:48.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\d3d11.dll
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\D3D10Warp.dll
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 2:45:48.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 2:45:48.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 2:45:48.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 2:45:48.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 2:45:48.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 2:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_5FA8E5E800867BF860DF5E533E701BAF
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\85B3F147E3624A14E6A20DB4F6C2C5D9
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_167DB4E3AB356C5B50FAA8944D554776
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0270780F846F08BEFE0DD8112D932FEF
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_5FA8E5E800867BF860DF5E533E701BAF
19/10/2019 - 2:45:48.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.637Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.637Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\85B3F147E3624A14E6A20DB4F6C2C5D9
19/10/2019 - 2:45:48.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.637Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.637Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:48.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.637Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:48.653Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xml
19/10/2019 - 2:45:48.653Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 2:45:48.653Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xml
19/10/2019 - 2:45:48.653Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 2:45:48.653Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xml
19/10/2019 - 2:45:48.653Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\XmlLite.dll
19/10/2019 - 2:45:48.653Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 2:45:48.653Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 2:45:48.653Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 2:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\WINHTTP.dll
19/10/2019 - 2:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 2:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 2:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\webio.dll
19/10/2019 - 2:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 2:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 2:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\KernelBase.dll.mui
19/10/2019 - 2:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].js
19/10/2019 - 2:45:48.700Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 2:45:48.700Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 2:45:48.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\dhcpcsvc6.DLL
19/10/2019 - 2:45:48.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dll
19/10/2019 - 2:45:48.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 2:45:48.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dll
19/10/2019 - 2:45:48.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 2:45:48.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].js
19/10/2019 - 2:45:48.747Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 2:45:48.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 2:45:48.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.747Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 2:45:48.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\times.ttf
19/10/2019 - 2:45:48.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\segoeui.ttf
19/10/2019 - 2:45:48.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\arial.ttf
19/10/2019 - 2:45:48.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\arial.ttf
19/10/2019 - 2:45:48.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisym.ttf
19/10/2019 - 2:45:48.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisym.ttf
19/10/2019 - 2:45:48.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisym.ttf
19/10/2019 - 2:45:48.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.dat
19/10/2019 - 2:45:48.887Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 2:45:48.887Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 2:45:48.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MkhA[1].png
19/10/2019 - 2:45:48.887Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MkhA[1].pngBB8MkhA[1].png
19/10/2019 - 2:45:48.887Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MkhA[1].pngBB8MkhA[1].png
19/10/2019 - 2:45:48.887Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MkhA[1].pngBB8MkhA[1].png
19/10/2019 - 2:45:48.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MkhA[1].pngBB8MkhA[1].png
19/10/2019 - 2:45:48.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\dhcpcsvc.DLL
19/10/2019 - 2:45:48.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 2:45:48.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 2:45:48.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.934Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 2:45:48.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MmPQ[1].png
19/10/2019 - 2:45:48.934Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MmPQ[1].pngBB8MmPQ[1].png
19/10/2019 - 2:45:48.934Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MmPQ[1].pngBB8MmPQ[1].png
19/10/2019 - 2:45:48.934Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MmPQ[1].pngBB8MmPQ[1].png
19/10/2019 - 2:45:48.934Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MmPQ[1].pngBB8MmPQ[1].png
19/10/2019 - 2:45:48.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:48.934Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 2:45:49.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2
19/10/2019 - 2:45:49.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2
19/10/2019 - 2:45:49.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff
19/10/2019 - 2:45:49.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff4996b9[1].woff
19/10/2019 - 2:45:49.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff
19/10/2019 - 2:45:49.106Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff4996b9[1].woff
19/10/2019 - 2:45:49.106Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff4996b9[1].woff
19/10/2019 - 2:45:49.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 2:45:49.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\jscript9.dll.mui
19/10/2019 - 2:45:49.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 2:45:49.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 2:45:49.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 2:45:49.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 2:45:49.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 2:45:49.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 2:45:49.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 2:45:49.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 2:45:49.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 2:45:49.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-core-winrt-l1-1-0.dll
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.481Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.481Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 2:45:49.543Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisym.ttf
19/10/2019 - 2:45:49.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\simsun.ttc
19/10/2019 - 2:45:49.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_4AD9ADFD858BEA6F13F2279EC0DA1469
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\521F25E202FF760B8461B88413F425E7
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff
19/10/2019 - 2:45:49.590Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff4996b9[1].woff
19/10/2019 - 2:45:49.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff4996b9[1].woff
19/10/2019 - 2:45:49.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff
19/10/2019 - 2:45:49.590Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff4996b9[1].woff
19/10/2019 - 2:45:49.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4996b9[1].woff4996b9[1].woff
19/10/2019 - 2:45:49.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.668Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.668Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.668Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.668Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.668Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 2:45:49.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 2:45:49.668Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_4AD9ADFD858BEA6F13F2279EC0DA1469
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\521F25E202FF760B8461B88413F425E7
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.684Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.684Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.950Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.950Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.950Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.950Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\49KMG096.txt
19/10/2019 - 2:45:50.184Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\49KMG096.txt
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x0000000000000000.db
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 2:45:50.184Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 2:45:50.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 2:45:50.184Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 2:45:50.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 2:45:50.200Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 2:45:50.200Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\a5ea21[1].ico
19/10/2019 - 2:45:50.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\a5ea21[1].icoa5ea21[1].ico
19/10/2019 - 2:45:50.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\POWRPROF.DLL
19/10/2019 - 2:45:50.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 2:45:50.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 2:45:50.653Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 2:45:50.653Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 2:45:50.653Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 2:45:50.653Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 2:45:50.731Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:50.731Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:50.731Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.731Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GNPSALSH.txt
19/10/2019 - 2:45:50.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:50.762Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:50.762Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:50.762Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:50.762Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_62391B1AED35BD255C4468CBC05D99E2
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A12
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C5D328B175B1E9E27383784E842FE47D
19/10/2019 - 2:45:50.793Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ImgUtil.dll
19/10/2019 - 2:45:50.793Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 2:45:50.793Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 2:45:50.793Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.793Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.793Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.793Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.793Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.793Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.793Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.793Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.793Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.793Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_62391B1AED35BD255C4468CBC05D99E2
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A12
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C5D328B175B1E9E27383784E842FE47D
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:50.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.950Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.950Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 2:45:50.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.950Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.950Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:50.950Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 2:45:51.59Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:51.59Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:51.59Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.59Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.59Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.59Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.59Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.59Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.59Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.75Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.75Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.75Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.75Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\ZLRDR3I8.txt
19/10/2019 - 2:45:51.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:51.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 2:45:51.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.106Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\L2W6ZRXO.txt
19/10/2019 - 2:45:51.200Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].js
19/10/2019 - 2:45:51.200Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].js
19/10/2019 - 2:45:51.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 2:45:51.200Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].js
19/10/2019 - 2:45:51.200Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 2:45:51.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 2:45:51.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\WINMM.dll
19/10/2019 - 2:45:51.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 2:45:51.215Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 2:45:51.293Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3GKPXVZT.txt
19/10/2019 - 2:45:51.293Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3GKPXVZT.txt
19/10/2019 - 2:45:51.516Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:51.516Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:51.516Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:51.516Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:51.516Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:51.516Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:51.516Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:51.516Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:51.516Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 2:45:51.516Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:51.516Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:51.516Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:51.516Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 2:45:51.516Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:51.547Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:51.547Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:51.547Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 2:45:51.547Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 2:45:51.547Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:51.547Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 2:45:51.547Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content