Report #679 check_circle

  • Creation Date: Oct. 19, 2019, 2:20 a.m.
  • Last Update: Oct. 19, 2019, 4:42 a.m.
  • File: 027
  • Results:
Binary
DLL
False cancel
Size
1.26MB
trid
35.0% InstallShield setup
33.8% Win32 EXE PECompact compressed
22.4% Win64 Executable
3.6% Win32 Executable
1.6% OS/2 Executable
type
PE
wordsize
32
Subsystem
Windows CLI
Hashes
md5
1ce2f6a77e2a713ca23a4174001bbfe0
sha1
7d7fe7309579754de6733efd8117ac2ef977e647
crc32
0x95e3a385
sha224
4c0e29dfddf34616817c95a0e89882597261813d8eaefcc74f028938
sha256
1e9e6ac5108efc37b264bcbc93a493f186181253c4e53f17813d4591430044cb
sha384
1ec2d914b50c43d7277ed19ac478eabbb1594e8c4e5fb2ec23e3283bcb3de293493713599a36deb039d36d4efd86cf0c
sha512
d4b95012f8ecde90b60ed76a3dbe71c5018dfa797ad7c2638f745d7a9ac9b349cddc5dd3c4c43774bd20534fec1141fde0642cdd5f40a6903ba50f2ebc69d9f3
ssdeep
24576:ewXKXtC+Zqgxr/nIiYWMf9dQnPoY20k0XgBq/bPEUpPhOZy+hz7FFUj9SD+sw4Ld:hGFZqgxr/nIiYWMf9dQnPoY20k0XgBq8
Community
Google
True check_circle
HashLib
False cancel
YARA
Matches
maldoc_getEIP_method_1, domain, IP, win_private_profile, Dropper_Strings, with_sqlite, HasDebugData, CRC32_poly_Constant, BASE64_table, escalate_priv, HasRichSignature, possible_includes_base64_packed_functions, VC8_Microsoft_Corporation, DebuggerException__SetConsoleCtrl, spreading_share, IsConsole, create_service, CRC32_table, network_dns, cred_local, win_files_operation, IsPE32, win_hook, disable_dep, contentis_base64, network_tcp_socket, SEH__vectored, screenshot, win_token, win_mutex, keylogger, Misc_Suspicious_Strings, maldoc_find_kernel32_base_method_1, migrate_apc, antisb_threatExpert, DebuggerHiding__Thread, anti_dbg, network_tcp_listen, DebuggerCheck__QueryInfo, url, Intel_Virtualization_Wizard_exe, Microsoft_Visual_Cpp_8, win_registry, Typical_Malware_String_Transforms, HasOverlay, Browsers, network_dga, Advapi_Hash_API, Big_Numbers5, create_com_service, Big_Numbers0

Suspicious
True check_circle

Strings
List
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:stRef="http://ns.adobe.com/xap/1.0/sType/ResourceRef#" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
</dc:rights></rdf:Description><rdf:Description rdf:about="uuid:faf5bdd5-ba3d-11da-ad31-d33d75182f1b" xmlns:tiff="http://ns.adobe.com/tiff/1.0/"/><rdf:Description rdf:about="uuid:faf5bdd5-ba3d-11da-ad31-d33d75182f1b" xmlns:exif="http://ns.adobe.com/exif/1.0/"/></rdf:RDF></x:xmpmeta>
</dc:rights></rdf:Description><rdf:Description rdf:about="uuid:faf5bdd5-ba3d-11da-ad31-d33d75182f1b" xmlns:tiff="http://ns.adobe.com/tiff/1.0/"/><rdf:Description rdf:about="uuid:faf5bdd5-ba3d-11da-ad31-d33d75182f1b" xmlns:exif="http://ns.adobe.com/exif/1.0/"/></rdf:RDF></x:xmpmeta>
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:xapMM="http://ns.adobe.com/xap/1.0/mm/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:pdf="http://ns.adobe.com/pdf/1.3/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:xap="http://ns.adobe.com/xap/1.0/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:tiff="http://ns.adobe.com/tiff/1.0/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:b1be9614-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:880b6202-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:c8e53c53-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:9ec20a53-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:df90b7af-923d-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:70e47554-7818-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:cf09c8e3-7814-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:b58a55db-7817-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:6f03c386-7819-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:70e4755a-7818-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:exif="http://ns.adobe.com/exif/1.0/">
<rdf:Description rdf:about="uuid:0bbddd83-7818-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
<rdf:Description rdf:about="uuid:0bbddd7d-7818-11dc-b3b7-80a45141ec24" xmlns:photoshop="http://ns.adobe.com/photoshop/1.0/">
qhttp://ns.adobe.com/xap/1.0/
qhttp://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
=http://ns.adobe.com/xap/1.0/
<rdf:Description rdf:about="uuid:1acf7d56-923e-11dc-bf0f-889ae1191ecf" xmlns:dc="http://purl.org/dc/elements/1.1/">
<dpiAware xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>
<dpiAware xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>
<dpiAware xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>
<dpiAware xmlns="http://schemas.microsoft.com/SMI/2005/WindowsSettings">true</dpiAware>

Foremost
Matches
0.exe, 221 KB
Suspicious
True check_circle
Heuristics
IPs
hasIPs: False cancel
Allowed
Suspicious
hasAllowed: False cancel
hasSuspicious: False cancel

URLs
Allowed
hasURLs: True check_circle
Suspicious: ftps://, http://, file:///, https://, http://www.ibsensoftware.com/, ftp://
hasAllowed: False cancel
hasSuspicious: True check_circle

Files
Allowed: sqlite3.dll, mozsqlite3.dll, nss3.dll, lsasrv.dll, kernel32.dll, ntdll.dll, Shlwapi.dll, %s\nss3.dll, sCrypt32.dll, vaultcli.dll, OLEAUT32.dll, WS2_32.dll, MSVCR110.dll, ole32.dll
hasFiles: True check_circle
Suspicious: %s\site.xml, {*.xml, %s\FileZilla\sitemanager.xml, %s\FileZilla\filezilla.xml, %s\.config\fullsync\profiles.xml, %s\FTP Now\sites.xml, %s\FTPInfo\ServerList.xml, %s\DeluxeFTP\sites.xml, %s\FTPGetter\servers.xml, %s\FTPGetter\Profile\servers.xml, %s\Notepad++\plugins\config\NppFTP\NppFTP.xml, %s\UltraFXP\sites.xml, %s\FileZilla\recentservers.xml, %s\32BitFtp.TMP, %s\QupZilla\profiles\default\browsedata.db, %s\INSoftware\NovaFTP\NovaFTP.db, %s\Far Manager\Profile\PluginsData\42E4AEB1-A230-44F4-B33C-F195BB654931.db, signons2.txt, signons.txt, %s\FTP Navigator\Ftplist.txt, %s\Steed\bookmarks.txt, signons3.txt, %s\GoFTP\settings\Connections.txt, %s\BlazeFtp\site.dat, %s\Estsoft\ALFTP\ESTdb2.dat, *Sites.dat, %s\NetDrive2\drives.dat, *quick.dat, %s\WinFtp Client\Favorites.dat, wand.dat
hasAllowed: True check_circle
hasSuspicious: True check_circle

Binary
Sizes
RVA
RVA: 16
Suspicious: False cancel
Code
Size: 223232
Suspicious: False cancel
Image
Address: 4194304
Suspicious: False cancel
Stack
Stack: 4096
Suspicious: False cancel
Headers
Headers: 1024
Suspicious: False cancel
Suspicious: False cancel

Symbols
Number
Number: 0
Suspicious: True check_circle
Pointer
Pointer: 0
Suspicious: True check_circle
Directories
Number: 16
Suspicious: False cancel

Checksum
Value: 0
Suspicous: True check_circle

Sections
Allowed: .text, .rdata, .data, .rsrc, .reloc
Suspicious
hasAllowed: True check_circle
hasSections: True check_circle
hasSuspicious: False cancel

Versions
OS
Version: 6
Suspicious: False cancel
Image
Version: True check_circle
Suspicious: 6
Linker
Version: 11.0
Suspicious: False cancel
Subsystem
Version: 6.0
Suspicious: False cancel
Suspicious: False cancel

EntryPoint
Address: 4951
Suspicious: False cancel

Anomalies
Anomalies: The header checksum and the calculated checksum do not match.
hasAnomalies: True check_circle

Libraries
Allowed: lsasrv.dll, kernel32.dll, ntdll.dll, shlwapi.dll, vaultcli.dll, oleaut32.dll, ws2_32.dll, ole32.dll
hasLibs: True check_circle
Suspicious: sqlite3.dll, mozsqlite3.dll, nss3.dll, %s\nss3.dll, scrypt32.dll, msvcr110.dll
hasAllowed: True check_circle
hasSuspicious: True check_circle

Timestamp
Past: False cancel
Valid: True check_circle
Value: 2019-08-28 13:23:34
Future: False cancel

Compilation
Packed: False cancel
Missing: False cancel
Packers
Compiled: True check_circle
Compilers: Microsoft Visual C++ 8, VC8 -> Microsoft Corporation

Obfuscation
XOR: True check_circle
Fuzzing: False cancel

PEDetector
Matches
6304
Suspicious
True check_circle
Disassembly
hasTricks
True check_circle
Tricks
ldr
.rsrc: 1

pushret
.rsrc: 32
.text: 1

nopsequence
.rsrc: 28

pushpopmath
.rsrc: 17

sizeofimage
.rsrc: 1

ss register
.rsrc: 2

garbagebytes
.rsrc: 10
.text: 1

fakeconditionaljumps
.rsrc: 1

programcontrolflowchange
.rsrc: 9
.text: 1

cpuinstructionsresultscomparison
.rsrc: 1
.rdata: 1

AVclass
ramnit
1
VirusTotal
md5
1ce2f6a77e2a713ca23a4174001bbfe0
sha1
7d7fe7309579754de6733efd8117ac2ef977e647
SCANS
AVG
result: Win32:RmnDrp
update: 20190909
version: 18.4.3895.0
detected: True check_circle

CMC
update: 20190321
version: 1.1.0.977
detected: False cancel

MAX
result: malware (ai score=83)
update: 20190910
version: 2018.9.12.1
detected: True check_circle

APEX
result: Malicious
update: 20190907
version: 5.61
detected: True check_circle

Bkav
update: 20190906
version: 1.3.0.10239
detected: False cancel

K7GW
update: 20190909
version: 11.66.31951
detected: False cancel

ALYac
result: Trojan.PWS.ZKD
update: 20190909
version: 1.1.1.5
detected: True check_circle

Avast
result: Win32:RmnDrp
update: 20190909
version: 18.4.3895.0
detected: True check_circle

Avira
result: W32/Ramnit.C
update: 20190909
version: 8.3.3.8
detected: True check_circle

Baidu
result: Win32.Trojan.Kryptik.mx
update: 20190318
version: 1.0.0.2
detected: True check_circle

Cyren
result: W32/Ramnit.B!Generic
update: 20190909
version: 6.2.0.1
detected: True check_circle

DrWeb
result: Trojan.PWS.Stealer.23680
update: 20190909
version: 7.0.41.7240
detected: True check_circle

GData
result: Trojan.PWS.ZKD
update: 20190909
version: A:25.23325B:26.15991
detected: True check_circle

Panda
result: Generic Suspicious
update: 20190909
version: 4.6.4.2
detected: True check_circle

VBA32
result: Virus.Win32.Nimnul.b
update: 20190909
version: 4.0.0
detected: True check_circle

Zoner
update: 20190910
version: 1.0.0.1
detected: False cancel

ClamAV
result: Win.Trojan.naKocTb-6331389-1
update: 20190909
version: 0.101.4.0
detected: True check_circle

Comodo
update: 20190909
version: 31450
detected: False cancel

F-Prot
result: W32/Ramnit.B!Generic
update: 20190909
version: 4.7.1.166
detected: True check_circle

Ikarus
result: Win32.Ramnit
update: 20190909
version: 0.1.5.2
detected: True check_circle

McAfee
result: W32/Ramnit.a
update: 20190909
version: 6.0.6.653
detected: True check_circle

Rising
result: Trojan.Fareit!1.B343 (CLASSIC)
update: 20190909
version: 25.0.0.24
detected: True check_circle

Sophos
result: Mal/Generic-S
update: 20190909
version: 4.98.0
detected: True check_circle

Yandex
result: Win32.Nimnul.Gen.2
update: 20190822
version: 5.5.2.24
detected: True check_circle

Zillya
update: 20190909
version: 2.0.0.3896
detected: False cancel

Acronis
update: 20190904
version: 1.1.1.56
detected: False cancel

Alibaba
result: Virus:Win32/Nimnul.d5d8e11e
update: 20190527
version: 0.3.0.5
detected: True check_circle

Arcabit
result: Trojan.PWS.ZKD
update: 20190909
version: 1.0.0.856
detected: True check_circle

Cylance
result: Unsafe
update: 20190910
version: 2.3.1.101
detected: True check_circle

Endgame
result: malicious (high confidence)
update: 20190819
version: 3.0.14
detected: True check_circle

FireEye
result: Generic.mg.1ce2f6a77e2a713c
update: 20190909
version: 29.7.0.0
detected: True check_circle

TACHYON
update: 20190909
version: 2019-09-09.02
detected: False cancel

Tencent
result: Virus.Win32.Nimnul.e
update: 20190910
version: 1.0.0.1
detected: True check_circle

ViRobot
update: 20190909
version: 2014.3.20.0
detected: False cancel

Webroot
update: 20190910
version: 1.0.0.403
detected: False cancel

Ad-Aware
result: Trojan.PWS.ZKD
update: 20190909
version: 3.0.5.370
detected: True check_circle

AegisLab
result: Virus.Win32.Nimnul.n!c
update: 20190909
version: 4.2
detected: True check_circle

Emsisoft
result: Trojan.PWS.ZKD (B)
update: 20190909
version: 2018.12.0.1641
detected: True check_circle

F-Secure
result: Malware.W32/Ramnit.C
update: 20190909
version: 12.0.86.52
detected: True check_circle

Fortinet
update: 20190909
version: 5.4.247.0
detected: False cancel

Invincea
update: 20190904
version: 6.3.6.26157
detected: False cancel

Jiangmin
update: 20190910
version: 16.0.100
detected: False cancel

Kingsoft
update: 20190910
version: 2013.8.14.323
detected: False cancel

Paloalto
result: generic.ml
update: 20190910
version: 1.0
detected: True check_circle

Symantec
result: ML.Attribute.HighConfidence
update: 20190909
version: 1.10.0.0
detected: True check_circle

Trapmine
update: 20190826
version: 3.1.81.800
detected: False cancel

AhnLab-V3
result: Trojan/Win32.Xtrat.C3450632
update: 20190909
version: 3.16.1.25089
detected: True check_circle

Antiy-AVL
result: Virus/Win32.Nimnul.a
update: 20190909
version: 3.0.0.1
detected: True check_circle

Kaspersky
result: Virus.Win32.Nimnul.a
update: 20190909
version: 15.0.1.13
detected: True check_circle

Microsoft
result: PWS:Win32/Primarypass.A
update: 20190909
version: 1.1.16300.1
detected: True check_circle

Qihoo-360
result: Win32/Virus.IM.0e1
update: 20190910
version: 1.0.0.1120
detected: True check_circle

ZoneAlarm
result: Virus.Win32.Nimnul.a
update: 20190909
version: 1.0
detected: True check_circle

Cybereason
result: malicious.77e2a7
update: 20190616
version: 1.2.449
detected: True check_circle

ESET-NOD32
result: Win32/Ramnit.H
update: 20190909
version: 19993
detected: True check_circle

TrendMicro
result: PE_RAMNIT.DEN
update: 20190909
version: 11.0.0.1006
detected: True check_circle

BitDefender
result: Trojan.PWS.ZKD
update: 20190909
version: 7.2
detected: True check_circle

CrowdStrike
result: win/malicious_confidence_70% (W)
update: 20190702
version: 1.0
detected: True check_circle

K7AntiVirus
update: 20190909
version: 11.66.31957
detected: False cancel

SentinelOne
result: DFI - Suspicious PE
update: 20190807
version: 1.0.31.22
detected: True check_circle

Avast-Mobile
update: 20190909
version: 190909-00
detected: False cancel

Malwarebytes
update: 20190909
version: 2.1.1.1115
detected: False cancel

TotalDefense
result: Win32/Ramnit.C
update: 20190909
version: 37.1.62.1
detected: True check_circle

CAT-QuickHeal
result: W32.Ramnit.BA
update: 20190909
version: 14.00
detected: True check_circle

NANO-Antivirus
result: Virus.Win32.Nimnul.fntoeg
update: 20190909
version: 1.0.134.24859
detected: True check_circle

MicroWorld-eScan
result: Trojan.PWS.ZKD
update: 20190909
version: 14.0.297.0
detected: True check_circle

SUPERAntiSpyware
update: 20190906
version: 5.6.0.1032
detected: False cancel

McAfee-GW-Edition
result: BehavesLike.Win32.RAHack.th
update: 20190909
version: v2017.3010
detected: True check_circle

TrendMicro-HouseCall
result: PE_RAMNIT.DEN
update: 20190909
version: 10.0.0.1040
detected: True check_circle

total
68
sha256
1e9e6ac5108efc37b264bcbc93a493f186181253c4e53f17813d4591430044cb
scan_id
1e9e6ac5108efc37b264bcbc93a493f186181253c4e53f17813d4591430044cb-1568069574
resource
1ce2f6a77e2a713ca23a4174001bbfe0
positives
49
scan_date
2019-09-09 22:52:54
verbose_msg
Scan finished, information embedded
response_code
1
File
Trace
19/10/2019 - 3:45:42.559Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.559Write1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Windows\AppPatch\sysmain.sdb
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Monitor
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Monitor
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Monitor
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Monitor
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Monitor
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Monitor
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Read1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Monitor\ui\SwDRM.dll
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Open1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Read1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Read1480C:\malware.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Windows
19/10/2019 - 3:45:42.684Unknown1480C:\malware.exeC:\Monitor
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\Prefetch\PROC.EXE-5509F567.pf
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64.dll
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64.dll
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\System32\wow64log.dll
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 3:45:42.700Unknown1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 3:45:42.700Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\
19/10/2019 - 3:45:42.715Unknown1488C:\Monitor\proc.exeC:\
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.715Write1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.715Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.715Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.715Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.731Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.731Write1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.731Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\Windows\AppPatch\sysmain.sdb
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 3:45:42.731Unknown1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.731Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\
19/10/2019 - 3:45:42.731Unknown1488C:\Monitor\proc.exeC:\
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 3:45:42.731Unknown1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 3:45:42.731Unknown1488C:\Monitor\proc.exeC:\Monitor
19/10/2019 - 3:45:42.731Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.731Read1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.747Open1488C:\Monitor\proc.exeC:\Monitor\ui\SwDRM.dll
19/10/2019 - 3:45:42.747Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.747Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.747Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.747Open1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.747Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.747Unknown1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.747Read1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.747Read1488C:\Monitor\proc.exeC:\Monitor\procmgr.exe
19/10/2019 - 3:45:42.856Open2476C:\Monitor\procmgr.exeC:\Windows\Prefetch\PROCMGR.EXE-886EB5D5.pf
19/10/2019 - 3:45:42.856Open2476C:\Monitor\procmgr.exeC:\Windows
19/10/2019 - 3:45:42.856Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64.dll
19/10/2019 - 3:45:42.856Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64.dll
19/10/2019 - 3:45:42.856Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 3:45:42.856Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 3:45:42.856Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 3:45:42.856Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Windows\System32\wow64log.dll
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Windows
19/10/2019 - 3:45:42.872Unknown2476C:\Monitor\procmgr.exeC:\Windows
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Monitor
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Monitor\procmgr.exe.Local
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:42.872Unknown2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:42.872Open2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 3:45:42.872Unknown1488C:\Monitor\proc.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Monitor\CRYPTSP.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.872Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.887Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.887Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.887Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.887Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:42.887Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.887Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.887Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.887Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.887Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.887Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:42.903Open1488C:\Monitor\proc.exeC:\Program Files (x86)
19/10/2019 - 3:45:42.903Unknown1488C:\Monitor\proc.exeC:\Program Files (x86)
19/10/2019 - 3:45:42.903Open1488C:\Monitor\proc.exeC:\Program Files\NETGATE\Black Hawk
19/10/2019 - 3:45:42.903Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Lunascape\Lunascape6\plugins\{9BDD5314-20A6-4d98-AB30-8325A95771EE}
19/10/2019 - 3:45:42.903Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:42.903Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:42.903Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Comodo\Dragon\User Data\Default\Login Data
19/10/2019 - 3:45:42.918Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 3:45:42.918Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 3:45:42.918Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.918Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.918Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.918Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.918Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.918Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.918Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.934Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Comodo\Dragon\User Data\Default\Web Data
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalComodo\Dragon\Login Data
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalComodo\Dragon\Default\Login Data
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\MapleStudio\ChromePlus\User Data\Default\Login Data
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\MapleStudio\ChromePlus\User Data\Default\Web Data
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalMapleStudio\ChromePlus\Login Data
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalMapleStudio\ChromePlus\Default\Login Data
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Google\Chrome\User Data\Default\Login Data
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Google\Chrome\User Data\Default\Web Data
19/10/2019 - 3:45:42.997Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalGoogle\Chrome\Login Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalGoogle\Chrome\Default\Login Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Nichrome\User Data\Default\Login Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Nichrome\User Data\Default\Web Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalNichrome\Login Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalNichrome\Default\Login Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\RockMelt\User Data\Default\Login Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\RockMelt\User Data\Default\Web Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalRockMelt\Login Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalRockMelt\Default\Login Data
19/10/2019 - 3:45:43.12Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Spark\User Data\Default\Login Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Spark\User Data\Default\Web Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalSpark\Login Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalSpark\Default\Login Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Chromium\User Data\Default\Login Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Chromium\User Data\Default\Web Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalChromium\Login Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalChromium\Default\Login Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Titan Browser\User Data\Default\Login Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Titan Browser\User Data\Default\Web Data
19/10/2019 - 3:45:43.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalTitan Browser\Login Data
19/10/2019 - 3:45:43.43Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalTitan Browser\Default\Login Data
19/10/2019 - 3:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Torch\User Data\Default\Login Data
19/10/2019 - 3:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Torch\User Data\Default\Web Data
19/10/2019 - 3:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalTorch\Login Data
19/10/2019 - 3:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalTorch\Default\Login Data
19/10/2019 - 3:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Yandex\YandexBrowser\User Data\Default\Login Data
19/10/2019 - 3:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Yandex\YandexBrowser\User Data\Default\Web Data
19/10/2019 - 3:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalYandex\YandexBrowser\Login Data
19/10/2019 - 3:45:43.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalYandex\YandexBrowser\Default\Login Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Epic Privacy Browser\User Data\Default\Login Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Epic Privacy Browser\User Data\Default\Web Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalEpic Privacy Browser\Login Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalEpic Privacy Browser\Default\Login Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CocCoc\Browser\User Data\Default\Login Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CocCoc\Browser\User Data\Default\Web Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCocCoc\Browser\Login Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCocCoc\Browser\Default\Login Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Vivaldi\User Data\Default\Login Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Vivaldi\User Data\Default\Web Data
19/10/2019 - 3:45:43.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalVivaldi\Login Data
19/10/2019 - 3:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalVivaldi\Default\Login Data
19/10/2019 - 3:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Comodo\Chromodo\User Data\Default\Login Data
19/10/2019 - 3:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Comodo\Chromodo\User Data\Default\Web Data
19/10/2019 - 3:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalComodo\Chromodo\Login Data
19/10/2019 - 3:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalComodo\Chromodo\Default\Login Data
19/10/2019 - 3:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Superbird\User Data\Default\Login Data
19/10/2019 - 3:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Superbird\User Data\Default\Web Data
19/10/2019 - 3:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalSuperbird\Login Data
19/10/2019 - 3:45:43.122Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalSuperbird\Default\Login Data
19/10/2019 - 3:45:43.137Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:43.137Open2476C:\Monitor\procmgr.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 3:45:43.137Unknown2476C:\Monitor\procmgr.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 3:45:43.153Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:43.153Open2476C:\Monitor\procmgr.exeC:\Monitor\Files\DeletedFiles
19/10/2019 - 3:45:43.153Delete2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:43.153Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:43.153Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM155.tmp
19/10/2019 - 3:45:43.153Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 3:45:43.153Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 3:45:43.153Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.153Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.153Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.153Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.153Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.200Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.200Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.200Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.200Read2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Coowon\Coowon\User Data\Default\Login Data
19/10/2019 - 3:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Coowon\Coowon\User Data\Default\Web Data
19/10/2019 - 3:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCoowon\Coowon\Login Data
19/10/2019 - 3:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCoowon\Coowon\Default\Login Data
19/10/2019 - 3:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Mustang Browser\User Data\Default\Login Data
19/10/2019 - 3:45:43.200Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Mustang Browser\User Data\Default\Web Data
19/10/2019 - 3:45:43.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalMustang Browser\Login Data
19/10/2019 - 3:45:43.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalMustang Browser\Default\Login Data
19/10/2019 - 3:45:43.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\360Browser\Browser\User Data\Default\Login Data
19/10/2019 - 3:45:43.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\360Browser\Browser\User Data\Default\Web Data
19/10/2019 - 3:45:43.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local360Browser\Browser\Login Data
19/10/2019 - 3:45:43.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local360Browser\Browser\Default\Login Data
19/10/2019 - 3:45:43.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CatalinaGroup\Citrio\User Data\Default\Login Data
19/10/2019 - 3:45:43.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\CatalinaGroup\Citrio\User Data\Default\Web Data
19/10/2019 - 3:45:43.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCatalinaGroup\Citrio\Login Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalCatalinaGroup\Citrio\Default\Login Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Google\Chrome SxS\User Data\Default\Login Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Google\Chrome SxS\User Data\Default\Web Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalGoogle\Chrome SxS\Login Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalGoogle\Chrome SxS\Default\Login Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Orbitum\User Data\Default\Login Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Orbitum\User Data\Default\Web Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalOrbitum\Login Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalOrbitum\Default\Login Data
19/10/2019 - 3:45:43.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Iridium\User Data\Default\Login Data
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Iridium\User Data\Default\Web Data
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalIridium\Login Data
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\LocalIridium\Default\Login Data
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:43.293Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera\Opera Next\data\User Data\Default\Login Data
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera\Opera Next\data\User Data\Default\Web Data
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera\Opera Next\data\Login Data
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera\Opera Next\data\Default\Login Data
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Software\Opera Stable\User Data\Default\Login Data
19/10/2019 - 3:45:43.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Software\Opera Stable\User Data\Default\Web Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Software\Opera Stable\Login Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Software\Opera Stable\Default\Login Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir\setting\modules\ChromiumViewer\User Data\Default\Login Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir\setting\modules\ChromiumViewer\User Data\Default\Web Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir\setting\modules\ChromiumViewer\Login Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir\setting\modules\ChromiumViewer\Default\Login Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir5\setting\modules\ChromiumViewer\User Data\Default\Login Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir5\setting\modules\ChromiumViewer\User Data\Default\Web Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir5\setting\modules\ChromiumViewer\Login Data
19/10/2019 - 3:45:43.309Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Fenrir Inc\Sleipnir5\setting\modules\ChromiumViewer\Default\Login Data
19/10/2019 - 3:45:43.325Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\QupZilla\profiles\default\browsedata.db
19/10/2019 - 3:45:43.325Open1488C:\Monitor\proc.exeC:\Monitor\vaultcli.dll
19/10/2019 - 3:45:43.325Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\vaultcli.dll
19/10/2019 - 3:45:43.325Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\vaultcli.dll
19/10/2019 - 3:45:43.325Write2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.372Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.372Open2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.372Open2476C:\Monitor\procmgr.exeC:\Monitor\Files\DeletedFiles
19/10/2019 - 3:45:43.372Delete2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.372Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.372Unknown2476C:\Monitor\procmgr.exeC:\Users\Behemot\AppData\Local\Temp\~TM240.tmp
19/10/2019 - 3:45:43.372Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer
19/10/2019 - 3:45:43.372Unknown2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer
19/10/2019 - 3:45:43.418Open2476C:\Monitor\procmgr.exeC:\Program
19/10/2019 - 3:45:43.418Open2476C:\Monitor\procmgr.exeC:\Program.exe
19/10/2019 - 3:45:43.418Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet
19/10/2019 - 3:45:43.418Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet.exe
19/10/2019 - 3:45:43.418Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.418Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.418Open2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.418Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:43.418Open2476C:\Monitor\procmgr.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:43.418Unknown2476C:\Monitor\procmgr.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pf
19/10/2019 - 3:45:43.418Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Prefetch\IEXPLORE.EXE-908C99F8.pfIEXPLORE.EXE-908C99F8.pf
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exe\Device\HarddiskVolume2
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 3:45:43.418Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 3:45:43.418Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dllapisetschema.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\KernelBase.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\KernelBase.dllKernelBase.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\gdi32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\gdi32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\lpk.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\lpk.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\usp10.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\usp10.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msvcrt.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msvcrt.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dllapi-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\advapi32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\advapi32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcrt4.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcrt4.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shell32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shell32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shlwapi.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shlwapi.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\iertutil.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\iertutil.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dllapi-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dllapi-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dllapi-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\normaliz.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\normaliz.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dllapi-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msctf.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msctf.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dllcryptbase.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ole32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ole32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaut32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaut32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\comdlg32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\comdlg32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\urlmon.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\urlmon.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dllapi-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wininet.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wininet.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\userenv.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\userenv.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\profapi.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\profapi.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ws2_32.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ws2_32.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nsi.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nsi.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:43.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 3:45:43.434Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\clbcatq.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\clbcatq.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\crypt32.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\crypt32.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msasn1.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msasn1.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RECOVERYSTORE.{6C9E6232-4F1A-11E8-8B8A-525400842A13}.DAT
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF31E8A27AA33A1DCA.TMP
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.dat
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dllExplorerFrame.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{6C9E6234-4F1A-11E8-8B8A-525400842A13}.DAT
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DF96115008492A9D98.TMP
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.dbcversions.2.db
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.dat
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\setupapi.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\setupapi.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cfgmgr32.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cfgmgr32.dll
19/10/2019 - 3:45:43.450Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\devobj.dll
19/10/2019 - 3:45:43.450Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\devobj.dll
19/10/2019 - 3:45:43.450Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:43.450Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:43.450Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\comdlg32.dll
19/10/2019 - 3:45:43.450Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:43.450Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 3:45:43.465Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 3:45:43.465Unknown2476C:\Monitor\procmgr.exeC:\Windows
19/10/2019 - 3:45:43.465Unknown2476C:\Monitor\procmgr.exeC:\Monitor
19/10/2019 - 3:45:43.465Unknown2476C:\Monitor\procmgr.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\WebCache\WebCacheV01.dat
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.dbcversions.2.db
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db{D26FB7DB-64FE-4194-9875-380C6181B1A4}.2.ver0x0000000000000001.db
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 3:45:43.575Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dllapisetschema.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\KernelBase.dllKernelBase.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\gdi32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\lpk.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\usp10.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msvcrt.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l1-1-0.dllapi-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\advapi32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcrt4.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shell32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shlwapi.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\iertutil.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-version-l1-1-0.dllapi-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-user32-l1-1-0.dllapi-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-normaliz-l1-1-0.dllapi-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\normaliz.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l1-1-0.dllapi-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msctf.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dllcryptbase.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ole32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaut32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\urlmon.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-ole32-l1-1-0.dllapi-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wininet.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\userenv.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\profapi.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ws2_32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nsi.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\clbcatq.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\crypt32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msasn1.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dllExplorerFrame.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\setupapi.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cfgmgr32.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\devobj.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exe\Device\HarddiskVolume2
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Monitor
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sechost.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:43.590Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\version.DLL
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\version.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 3:45:43.590Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\imm32.dll
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\CRYPTBASE.DLL
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dll
19/10/2019 - 3:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dllcryptbase.dll
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dll
19/10/2019 - 3:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptbase.dllcryptbase.dll
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 3:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEFRAME.dll
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieframe.dll
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe.Local
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 3:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 3:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 3:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757\comctl32.dll
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 3:45:43.606Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 3:45:43.606Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe.Local
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_a4d981ff711297b6\comctl32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rpcss.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\uxtheme.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\dwmapi.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dwmapi.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\Secur32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\secur32.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\SSPICLI.DLL
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\sspicli.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:43.622Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:43.622Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:43.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 3:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 3:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winhttp.dll
19/10/2019 - 3:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 3:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\webio.dll
19/10/2019 - 3:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:43.700Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:43.700Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:43.700Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mswsock.dll
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wship6.dll
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IPHLPAPI.DLL
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\IPHLPAPI.DLL
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\WINNSI.DLL
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 3:45:43.715Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\winnsi.dll
19/10/2019 - 3:45:43.793Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 3:45:43.793Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netprofm.dll
19/10/2019 - 3:45:43.793Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 3:45:43.793Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\nlaapi.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\CRYPTSP.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\cryptsp.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rsaenh.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\RpcRtRemote.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dll
19/10/2019 - 3:45:43.887Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 3:45:43.887Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dll
19/10/2019 - 3:45:43.887Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\npmproxy.dll
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\suspend.dll
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.bin
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.binurlblocklist.bin
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.bin
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\UrlBlockManager\urlblocklist.binurlblocklist.bin
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Monitor
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Low
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.28Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.28Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Virtualized
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Adobe\Flash Player\NativeCache
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Adobe\Flash Player\NativeCache
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Internet Explorer\UserData\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Tracking Protection
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Tracking Protection
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Feeds
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Feeds
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\TabRoaming
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\PlayReady
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\PlayReady
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\PrivacIE\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\DNTException\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatCache\Low
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache
19/10/2019 - 3:45:44.43Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache
19/10/2019 - 3:45:44.43Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\IECompatUACache\Low
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\Low
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:44.59Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\History.IE5
19/10/2019 - 3:45:44.59Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\History.IE5
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\NETAPI32.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netapi32.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\netutils.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\netutils.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\srvcli.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\srvcli.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\wkscli.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\wkscli.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\IEUI.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 3:45:44.75Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ieui.dll
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WSHTCPIP.DLL
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\DNSAPI.dll
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dnsapi.dll
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\rasadhlp.dll
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\rasadhlp.dll
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 3:45:44.137Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\FWPUCLNT.DLL
19/10/2019 - 3:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.184Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:44.184Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:44.215Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera
19/10/2019 - 3:45:44.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\.purple\accounts.xml
19/10/2019 - 3:45:44.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:44.231Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:44.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\SuperPutty
19/10/2019 - 3:45:44.231Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FTPShell\ftpshell.fsi
19/10/2019 - 3:45:44.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Notepad++\plugins\config\NppFTP\NppFTP.xml
19/10/2019 - 3:45:44.231Open1488C:\Monitor\proc.exeC:\Program Files (x86)\oZone3D\MyFTP\myftp.ini
19/10/2019 - 3:45:44.231Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTPBox\profiles.conf
19/10/2019 - 3:45:44.231Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Sherrod Computers\sherrod FTP\favorites
19/10/2019 - 3:45:44.247Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FTP Now\sites.xml
19/10/2019 - 3:45:44.247Open1488C:\Monitor\proc.exeC:\Program Files (x86)\NexusFile\userdata\ftpsite.ini
19/10/2019 - 3:45:44.247Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NexusFile\ftpsite.ini
19/10/2019 - 3:45:44.247Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\NetSarang\Xftp\Sessions
19/10/2019 - 3:45:44.247Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NetSarang\Xftp\Sessions
19/10/2019 - 3:45:44.247Open1488C:\Monitor\proc.exeC:\Program Files (x86)\EasyFTP\data
19/10/2019 - 3:45:44.247Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\SftpNetDrive
19/10/2019 - 3:45:44.247Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP7\encPwd.jsd
19/10/2019 - 3:45:44.309Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP7\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.309Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP7\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.309Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP8\encPwd.jsd
19/10/2019 - 3:45:44.309Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP8\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.309Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP8\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.309Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP9\encPwd.jsd
19/10/2019 - 3:45:44.309Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP9\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.309Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP9\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.309Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP10\encPwd.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP10\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP10\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP11\encPwd.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP11\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP11\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP12\encPwd.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP12\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP12\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP13\encPwd.jsd
19/10/2019 - 3:45:44.325Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP13\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP13\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP14\encPwd.jsd
19/10/2019 - 3:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP14\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\AbleFTP14\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp7\encPwd.jsd
19/10/2019 - 3:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp7\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp7\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp8\encPwd.jsd
19/10/2019 - 3:45:44.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp8\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp8\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp9\encPwd.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp9\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp9\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp10\encPwd.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp10\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp10\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp11\encPwd.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp11\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp11\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp12\encPwd.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp12\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp12\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp13\encPwd.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp13\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp13\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp14\encPwd.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp14\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\JaSFtp14\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize7\encPwd.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize7\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize7\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize8\encPwd.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize8\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize8\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize9\encPwd.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize9\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize9\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize10\encPwd.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize10\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.434Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize10\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.497Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.dat
19/10/2019 - 3:45:44.497Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 3:45:44.497Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\shell32.dll
19/10/2019 - 3:45:44.497Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\iexplore.exe.Local
19/10/2019 - 3:45:44.497Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 3:45:44.497Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 3:45:44.497Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\winsxs\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_fa3b1e3d17594757
19/10/2019 - 3:45:44.497Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\apphelp.dll
19/10/2019 - 3:45:44.497Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 3:45:44.497Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\apphelp.dll
19/10/2019 - 3:45:44.497Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-core-winrt-string-l1-1-0.dll
19/10/2019 - 3:45:44.512Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dll
19/10/2019 - 3:45:44.512Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 3:45:44.512Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dll
19/10/2019 - 3:45:44.512Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 3:45:44.512Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 3:45:44.512Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleacc.dll
19/10/2019 - 3:45:44.512Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\OLEACCRC.DLL
19/10/2019 - 3:45:44.512Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 3:45:44.512Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\oleaccrc.dll
19/10/2019 - 3:45:44.528Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dll
19/10/2019 - 3:45:44.528Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dllExplorerFrame.dll
19/10/2019 - 3:45:44.528Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dll
19/10/2019 - 3:45:44.528Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\ExplorerFrame.dllExplorerFrame.dll
19/10/2019 - 3:45:44.528Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 3:45:44.528Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\duser.dll
19/10/2019 - 3:45:44.528Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 3:45:44.528Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 3:45:44.528Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dui70.dll
19/10/2019 - 3:45:44.528Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-core-winrt-string-l1-1-0.dll
19/10/2019 - 3:45:44.543Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\MSIMG32.dll
19/10/2019 - 3:45:44.543Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 3:45:44.543Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\msimg32.dll
19/10/2019 - 3:45:44.543Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize11\encPwd.jsd
19/10/2019 - 3:45:44.543Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize11\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.543Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize11\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.543Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize12\encPwd.jsd
19/10/2019 - 3:45:44.543Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize12\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.559Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize12\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.559Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize13\encPwd.jsd
19/10/2019 - 3:45:44.559Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize13\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.559Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize13\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.559Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize14\encPwd.jsd
19/10/2019 - 3:45:44.559Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize14\data\settings\sshProfiles-j.jsd
19/10/2019 - 3:45:44.559Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Automize14\data\settings\ftpProfiles-j.jsd
19/10/2019 - 3:45:44.559Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Cyberduck
19/10/2019 - 3:45:44.559Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\iterate_GmbH
19/10/2019 - 3:45:44.575Open1488C:\Monitor\proc.exeC:\Users\Behemot
19/10/2019 - 3:45:44.575Unknown1488C:\Monitor\proc.exeC:\Users\Behemot
19/10/2019 - 3:45:44.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\.config\fullsync\profiles.xml
19/10/2019 - 3:45:44.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTPInfo\ServerList.xml
19/10/2019 - 3:45:44.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTPInfo\ServerList.cfg
19/10/2019 - 3:45:44.575Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FileZilla\Filezilla.xml
19/10/2019 - 3:45:44.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FileZilla\filezilla.xml
19/10/2019 - 3:45:44.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FileZilla\recentservers.xml
19/10/2019 - 3:45:44.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FileZilla\sitemanager.xml
19/10/2019 - 3:45:44.575Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Staff-FTP\sites.ini
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\en\IEXPLORE.EXE.mui
19/10/2019 - 3:45:44.637Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.653Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\PROPSYS.dll
19/10/2019 - 3:45:44.653Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 3:45:44.653Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 3:45:44.653Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:44.653Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:44.653Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 3:45:44.653Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:44.653Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:44.653Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 3:45:44.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\BlazeFtp\site.dat
19/10/2019 - 3:45:44.653Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Fastream NETFile\My FTP Links
19/10/2019 - 3:45:44.653Open1488C:\Monitor\proc.exeC:\Program Files (x86)\GoFTP\settings\Connections.txt
19/10/2019 - 3:45:44.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Estsoft\ALFTP\ESTdb2.dat
19/10/2019 - 3:45:44.668Open1488C:\Monitor\proc.exeC:\Program Files (x86)\DeluxeFTP\sites.xml
19/10/2019 - 3:45:44.668Open1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 3:45:44.668Unknown1488C:\Monitor\proc.exeC:\Windows
19/10/2019 - 3:45:44.668Open1488C:\Monitor\proc.exeC:\Windows\wcx_ftp.ini
19/10/2019 - 3:45:44.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\wcx_ftp.ini
19/10/2019 - 3:45:44.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\wcx_ftp.ini
19/10/2019 - 3:45:44.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\GHISLER\wcx_ftp.ini
19/10/2019 - 3:45:44.668Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FTPGetter\Profile\servers.xml
19/10/2019 - 3:45:44.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTPGetter\servers.xml
19/10/2019 - 3:45:44.684Open1488C:\Monitor\proc.exeC:\Program Files (x86)\WS_FTP\WS_FTP.INI
19/10/2019 - 3:45:44.684Open1488C:\Monitor\proc.exeC:\Windows\WS_FTP.INI
19/10/2019 - 3:45:44.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Ipswitch
19/10/2019 - 3:45:44.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\site.xml
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Prefetch\IEXPLORE.EXE-4B6C9213.pf
19/10/2019 - 3:45:44.747Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Prefetch\IEXPLORE.EXE-4B6C9213.pfIEXPLORE.EXE-4B6C9213.pf
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exe\Device\HarddiskVolume2
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\$EXTEND
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData
19/10/2019 - 3:45:44.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData
19/10/2019 - 3:45:44.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dllapisetschema.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\KernelBase.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\KernelBase.dllKernelBase.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msvcrt.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msvcrt.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dllapi-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\advapi32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\advapi32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcrt4.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcrt4.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sspicli.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sspicli.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptbase.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptbase.dllcryptbase.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\iertutil.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\iertutil.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dllapi-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dllapi-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\user32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\user32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gdi32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gdi32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\lpk.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\lpk.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\usp10.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\usp10.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dllapi-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\normaliz.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\normaliz.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dllapi-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shlwapi.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shlwapi.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaut32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaut32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 3:45:44.762Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 3:45:44.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\comdlg32.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\comdlg32.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dllapi-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\userenv.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\userenv.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\profapi.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\profapi.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\urlmon.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\urlmon.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ws2_32.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ws2_32.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nsi.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nsi.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\clbcatq.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\clbcatq.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dllbcryptprimitives.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\setupapi.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\setupapi.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cfgmgr32.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cfgmgr32.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\devobj.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\devobj.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wintrust.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wintrust.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\crypt32.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\crypt32.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msasn1.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msasn1.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8CS2PRM4.txt
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8CS2PRM4.txt
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 3:45:44.778Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 3:45:44.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dllp2pcollab.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wldap32.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wldap32.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E046BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E046BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\BCFED8GC.TXT
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\I6P0K07S.TXT
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\PT-BR[1].HTM
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gif
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gife151e5[1].gif
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kvzy[1].png
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kvzy[1].pngBB1kvzy[1].png
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAwBbg7[1].jpg
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAwBbg7[1].jpgAAwBbg7[1].jpg
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAv4RrG[1].jpg
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAv4RrG[1].jpgAAv4RrG[1].jpg
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAwGL0I[1].jpg
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAwGL0I[1].jpgAAwGL0I[1].jpg
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].png
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MIiC[1].png
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MIiC[1].pngBB8MIiC[1].png
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\b8-2f3a4c-4b5f58d3[1].css
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\b8-2f3a4c-4b5f58d3[1].cssb8-2f3a4c-4b5f58d3[1].css
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-System.dat
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-System.dat~FontCache-System.dat
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xml
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].js
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].js
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\41-e73167-68ddb2ab[1].js
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\41-e73167-68ddb2ab[1].js41-e73167-68ddb2ab[1].js
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-FontFace.dat
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-FontFace.dat~FontCache-FontFace.dat
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\segoeui.ttf
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\segoeui.ttf
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\c64c2a[1].woff
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\c64c2a[1].woffc64c2a[1].woff
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\jscript9.dll.mui
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\jscript9.dll.muijscript9.dll.mui
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S4OWK0RR.txt
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S4OWK0RR.txt
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\OLU3XFVE.txt
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\OLU3XFVE.txt
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\times.ttf
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\times.ttf
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 3:45:44.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B45457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 3:45:44.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B45457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C775080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C775080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\990861[1].svg
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\990861[1].svg990861[1].svg
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA2JbD3[1].png
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA2JbD3[1].pngAA2JbD3[1].png
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\Z075FCUF.TXT
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\24-3b1d5e-68ddb2ab[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\24-3b1d5e-68ddb2ab[1].js24-3b1d5e-68ddb2ab[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\chartbeat[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\chartbeat[1].jschartbeat[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\209I53WF.TXT
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\KKO6BXU4.TXT
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\W15N7ZSW.TXT
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8IX7DPVU.TXT
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAnimation.dll
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAnimation.dllUIAnimation.dll
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\VMNAML7Z.TXT
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA3jsXa[1].png
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA3jsXa[1].pngAA3jsXa[1].png
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BBqgb7K[1].png
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BBqgb7K[1].pngBBqgb7K[1].png
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAwGgve[1].jpg
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAwGgve[1].jpgAAwGgve[1].jpg
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAgPBML[1].png
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAgPBML[1].pngAAgPBML[1].png
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\MSNIdSync[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\MSNIdSync[1].jsMSNIdSync[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\br_msn_home_vitrine[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\br_msn_home_vitrine[1].jsbr_msn_home_vitrine[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD67423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD67423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0EA9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0EA9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5ABEDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5ABEDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\br_msn_home_vitrine.cfg[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\br_msn_home_vitrine.cfg[1].jsbr_msn_home_vitrine.cfg[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\aep-formats-20.14.0.min[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\aep-formats-20.14.0.min[1].jsaep-formats-20.14.0.min[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\59c177f5d970c300041220e2.tpl.min[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\59c177f5d970c300041220e2.tpl.min[1].js59c177f5d970c300041220e2.tpl.min[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\TaboolaCookieSyncScript[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\TaboolaCookieSyncScript[1].jsTaboolaCookieSyncScript[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE46BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE46BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\59c177f5d970c300041220e2[1].css
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\59c177f5d970c300041220e2[1].css59c177f5d970c300041220e2[1].css
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\58b810[1].gif
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\58b810[1].gif58b810[1].gif
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\msn[1].htm
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\msn[1].htmmsn[1].htm
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\publishertag[1].js
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\publishertag[1].jspublishertag[1].js
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\SILENTPASSPORT[1].HTM
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.cat
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\FZP5WLKE.TXT
19/10/2019 - 3:45:44.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\c08e43[1].jpg
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\c08e43[1].jpgc08e43[1].jpg
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecsExt.dll
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecsExt.dllWindowsCodecsExt.dll
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6.dll
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6.dll
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\KernelBase.dll.mui
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\KernelBase.dll.muiKernelBase.dll.mui
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6r.dll
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6r.dll
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\865070[1].jpg
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\865070[1].jpg865070[1].jpg
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8bd8bf[1].jpg
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8bd8bf[1].jpg8bd8bf[1].jpg
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8adb60[1].jpg
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8adb60[1].jpg8adb60[1].jpg
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\undefined[1].png
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\undefined[1].pngundefined[1].png
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784660[1].jpg
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784660[1].jpg784660[1].jpg
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784659[1].jpg
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784659[1].jpg784659[1].jpg
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784663[1].jpg
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784663[1].jpg784663[1].jpg
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784658[1].jpg
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784658[1].jpg784658[1].jpg
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\async_usersync[1].htm
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\async_usersync[1].htmasync_usersync[1].htm
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\beacon[1].js
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\beacon[1].jsbeacon[1].js
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\ASYNC_USERSYNC[1].JS
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\VP5UL7J7.TXT
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\9LD3P0Y8.TXT
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\19O5P9C0.txt
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\19O5P9C0.txt
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\X0AL0GS5.TXT
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\6SGKN470.TXT
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8IS70EJY.txt
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8IS70EJY.txt
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\QSML[2].XML
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dll
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 3:45:44.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.cat
19/10/2019 - 3:45:44.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.cat
19/10/2019 - 3:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 3:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mssprxy.dll
19/10/2019 - 3:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.918Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:44.918Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:44.918Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites
19/10/2019 - 3:45:44.918Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.918Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:44.918Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\ExpanDrive
19/10/2019 - 3:45:44.934Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\ExpanDrive
19/10/2019 - 3:45:44.934Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Steed\bookmarks.txt
19/10/2019 - 3:45:44.934Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FlashFXP
19/10/2019 - 3:45:44.934Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FlashFXP
19/10/2019 - 3:45:44.934Open1488C:\Monitor\proc.exeC:\ProgramData
19/10/2019 - 3:45:44.934Unknown1488C:\Monitor\proc.exeC:\ProgramData
19/10/2019 - 3:45:44.934Open1488C:\Monitor\proc.exeC:\ProgramData\FlashFXP
19/10/2019 - 3:45:44.934Open1488C:\Monitor\proc.exeC:\ProgramData\FlashFXP
19/10/2019 - 3:45:44.934Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\INSoftware\NovaFTP\NovaFTP.db
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\QSML[3].XML
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA41099915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA41099915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.cat
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.cat
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\QSML[6].XML
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GRO8Z4YG.txt
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GRO8Z4YG.txt
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\D3LNK60R.txt
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\D3LNK60R.txt
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\TOEJ0U6L.TXT
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.tlb
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.tlb
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAutomationCore.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAutomationCore.dllUIAutomationCore.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\psapi.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\psapi.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\C_20127.NLS
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\C_20127.NLS
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wpc.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wpc.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wevtapi.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wevtapi.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.db
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.dbcversions.2.db
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\VCREDIST_X86[1].EXE
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\vcredist_x64.exe
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\vcredist_x64.exe
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\vcredist_x86.exe
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\vcredist_x86.exe
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\2RMLHNN7.TXT
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\V1[1].HTM
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\style[1].css
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\style[1].cssstyle[1].css
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\bing-search-logo[1].png
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\bing-search-logo[1].pngbing-search-logo[1].png
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[1].js
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[1].jsscript[1].js
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\click-run_pt-br[1].jpg
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\click-run_pt-br[1].jpgclick-run_pt-br[1].jpg
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[2].js
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[2].jsscript[2].js
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24BB398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24BB398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\1715500327[1].js
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\1715500327[1].js1715500327[1].js
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\jquery-1.8.3.min[1].js
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\jquery-1.8.3.min[1].jsjquery-1.8.3.min[1].js
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W\www.microsoft[1].xml
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W\www.microsoft[1].xmlwww.microsoft[1].xml
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0A8EFV2Z.TXT
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\5DWWY1IU.TXT
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0RSIIBM3.TXT
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\MYD0W1QU.TXT
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mfplat.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mfplat.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\avrt.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\avrt.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[1].eot
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[1].eotlatest[1].eot
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[2].eot
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[2].eotlatest[2].eot
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtmlmedia.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtmlmedia.dllmshtmlmedia.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mf.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mf.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\atl.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\atl.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ksuser.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ksuser.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\t2embed.dll
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\t2embed.dll
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisb.ttf
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisb.ttf
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\latest[1].eot
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\latest[1].eotlatest[1].eot
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\search_icon[1].png
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\search_icon[1].pngsearch_icon[1].png
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\micross.ttf
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\micross.ttf
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\ie[1].png
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\ie[1].pngie[1].png
19/10/2019 - 3:45:45.12Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\yellow-arrow[1].png
19/10/2019 - 3:45:45.12Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\yellow-arrow[1].pngyellow-arrow[1].png
19/10/2019 - 3:45:45.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\Bing[1].png
19/10/2019 - 3:45:45.28Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\Bing[1].pngBing[1].png
19/10/2019 - 3:45:45.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\windowsupdate[1].png
19/10/2019 - 3:45:45.28Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\windowsupdate[1].pngwindowsupdate[1].png
19/10/2019 - 3:45:45.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 3:45:45.28Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 3:45:45.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 3:45:45.28Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 3:45:45.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\LIKE[1].HTM
19/10/2019 - 3:45:45.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\xfLjhe25qYs[1].js
19/10/2019 - 3:45:45.28Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\xfLjhe25qYs[1].jsxfLjhe25qYs[1].js
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Shell-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ro-RO~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~th-TH~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~nl-NL~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~sl-SI~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~et-EE~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hi-IN~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~he-IL~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~el-GR~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~uk-UA~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hr-HR~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-CN~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~lt-LT~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-HK~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~cs-CZ~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~zh-TW~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sk-SK~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~da-DK~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ja-JP~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-BR~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.catWin8IP-Microsoft-Windows-Graphics-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~lv-LV~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~ar-SA~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~pt-PT~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~sv-SE~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~ru-RU~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~hu-HU~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~it-IT~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~tr-TR~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-Windows-WinIP-Package~31bf3856ad364e35~amd64~pl-PL~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Win8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.catWin8IP-Microsoft-Windows-DownlevelApisets-WinIP-Package~31bf3856ad364e35~amd64~nb-NO~7.1.7601.16492.cat
19/10/2019 - 3:45:45.28Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAutomationCore.dllUIAutomationCore.dll
19/10/2019 - 3:45:45.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NetDrive\NDSites.ini
19/10/2019 - 3:45:45.28Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NetDrive2\drives.dat
19/10/2019 - 3:45:45.28Open1488C:\Monitor\proc.exeC:\ProgramData\NetDrive2\drives.dat
19/10/2019 - 3:45:45.28Open1488C:\Monitor\proc.exeC:\Windows\wcx_ftp.ini
19/10/2019 - 3:45:45.43Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\wcx_ftp.ini
19/10/2019 - 3:45:45.43Open1488C:\Monitor\proc.exeC:\Users\Behemot\wcx_ftp.ini
19/10/2019 - 3:45:45.43Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\GHISLER\wcx_ftp.ini
19/10/2019 - 3:45:45.43Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\SmartFTP
19/10/2019 - 3:45:45.43Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Far Manager\Profile\PluginsData\42E4AEB1-A230-44F4-B33C-F195BB654931.db
19/10/2019 - 3:45:45.106Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.106Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.153Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\locale.nls
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8CS2PRM4.txt
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E046BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E046BADA8974A10C4BD62CC921D13E43B18_BEB37ABADF39714871232B4792417E04
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B50D6B15D9F2DCE1EDBB0C098625FBE47_281AC807DE0FEF15F2CA9911FE760A9B
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gife151e5[1].gif
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kvzy[1].pngBB1kvzy[1].png
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAwBbg7[1].jpgAAwBbg7[1].jpg
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAv4RrG[1].jpgAAv4RrG[1].jpg
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAwGL0I[1].jpgAAwGL0I[1].jpg
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MIiC[1].pngBB8MIiC[1].png
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\b8-2f3a4c-4b5f58d3[1].cssb8-2f3a4c-4b5f58d3[1].css
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-System.dat~FontCache-System.dat
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\41-e73167-68ddb2ab[1].js41-e73167-68ddb2ab[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-FontFace.dat~FontCache-FontFace.dat
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\ServiceProfiles\LocalService\AppData\Local\~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat~FontCache-S-1-5-21-2148495166-3420019059-1286093062-1001.dat
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\segoeui.ttf
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\c64c2a[1].woffc64c2a[1].woff
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\jscript9.dll.muijscript9.dll.mui
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S4OWK0RR.txt
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\OLU3XFVE.txt
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\times.ttf
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B45457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B45457A8CE4B2A7499F8299A013B6E1C7C_CE50F893881D43DC0C815E4D80FAF2B4
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C775080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\5080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C775080DC7A65DB6A5960ECD874088F3328_2908F682DFC81A793BD240CF29711C77
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B024823B39FBEACCDB5C06426A8168E99_D14B1CE36D9D0F93A634A5E9E22B442B
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\990861[1].svg990861[1].svg
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA2JbD3[1].pngAA2JbD3[1].png
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\24-3b1d5e-68ddb2ab[1].js24-3b1d5e-68ddb2ab[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\chartbeat[1].jschartbeat[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AA3jsXa[1].pngAA3jsXa[1].png
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BBqgb7K[1].pngBBqgb7K[1].png
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAwGgve[1].jpgAAwGgve[1].jpg
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\AAgPBML[1].pngAAgPBML[1].png
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\MSNIdSync[1].jsMSNIdSync[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\br_msn_home_vitrine[1].jsbr_msn_home_vitrine[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD67423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\7423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD67423F88C7F265F0DEFC08EA88C3BDE45_D975BBA8033175C8D112023D8A7A8AD6
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0EA9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\A9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0EA9E4F776657345B52012CE8E279D314C_9E5F079A21E9B5A16B5D6449033D0D0E
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5ABEDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5ABEDC238BFF48A31D55A97E1E93892934B_C20E0DA2D0F89FE526E1490F4A2EE5AB
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\br_msn_home_vitrine.cfg[1].jsbr_msn_home_vitrine.cfg[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\aep-formats-20.14.0.min[1].jsaep-formats-20.14.0.min[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\59c177f5d970c300041220e2.tpl.min[1].js59c177f5d970c300041220e2.tpl.min[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\TaboolaCookieSyncScript[1].jsTaboolaCookieSyncScript[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE46BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE46BADA8974A10C4BD62CC921D13E43B18_88614FFAD35D353421B8A7E1FE18FCE4
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\59c177f5d970c300041220e2[1].css59c177f5d970c300041220e2[1].css
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F6BADA8974A10C4BD62CC921D13E43B18_C9FB72B5AE80778A08024D8B0FDECC6F
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\58b810[1].gif58b810[1].gif
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42F12703B35B1F82C21160A92376087C84_D65FD79591497596ED270B90105A4D42
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\msn[1].htmmsn[1].htm
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\publishertag[1].jspublishertag[1].js
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\c08e43[1].jpgc08e43[1].jpg
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\KernelBase.dll.muiKernelBase.dll.mui
19/10/2019 - 3:45:45.200Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6r.dll
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\865070[1].jpg865070[1].jpg
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8bd8bf[1].jpg8bd8bf[1].jpg
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\8adb60[1].jpg8adb60[1].jpg
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\undefined[1].pngundefined[1].png
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784660[1].jpg784660[1].jpg
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\784659[1].jpg784659[1].jpg
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784663[1].jpg784663[1].jpg
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\784658[1].jpg784658[1].jpg
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\async_usersync[1].htmasync_usersync[1].htm
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\beacon[1].jsbeacon[1].js
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\19O5P9C0.txt
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\8IS70EJY.txt
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1B398B80134F72209547439DB21AB308D_D93C575AD9E9AF9B95268A3CB953B5A1
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA41099915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\9915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA41099915FBCE5ECE56452A09FB65EDE2FAD2_80F9A36DBD5FAAA38A8DED2B49FA4109
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\GRO8Z4YG.txt
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\D3LNK60R.txt
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.tlb
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\C_20127.NLS
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\cversions.2.dbcversions.2.db
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db{6AF0698E-D558-4F6E-9B3C-3716689AF493}.2.ver0x0000000000000011.db
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\ProgramData\Microsoft\Windows\Caches\{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db{DDF571F2-BE98-426D-8288-1A9A39C3FDA2}.2.ver0x0000000000000002.db
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\vcredist_x64.exe
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\vcredist_x86.exe
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\style[1].cssstyle[1].css
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\bing-search-logo[1].pngbing-search-logo[1].png
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png4300ae64-546c-4bbe-9026-6779b3684fb8_32[1].png
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[1].jsscript[1].js
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\click-run_pt-br[1].jpgclick-run_pt-br[1].jpg
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\script[2].jsscript[2].js
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24BB398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\B398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24BB398B80134F72209547439DB21AB308D_592839A8569F831D0F2306AE4BB5C24B
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\1715500327[1].js1715500327[1].js
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\jquery-1.8.3.min[1].jsjquery-1.8.3.min[1].js
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\SM4GL60W\www.microsoft[1].xmlwww.microsoft[1].xml
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[1].eotlatest[1].eot
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\latest[2].eotlatest[2].eot
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisb.ttf
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\latest[1].eotlatest[1].eot
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\search_icon[1].pngsearch_icon[1].png
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\micross.ttf
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\ie[1].pngie[1].png
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\yellow-arrow[1].pngyellow-arrow[1].png
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\Bing[1].pngBing[1].png
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\windowsupdate[1].pngwindowsupdate[1].png
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B35DDEDF268117918D1D277A171D8DF7B_F2DE72102A14736B534BAAAB62F0BD4B
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\xfLjhe25qYs[1].jsxfLjhe25qYs[1].js
19/10/2019 - 3:45:45.215Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:45.247Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.247Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.247Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.247Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\ntdll.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\kernel32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\kernel32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\user32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ntdll.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\apisetschema.dllapisetschema.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\KernelBase.dllKernelBase.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msvcrt.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dllapi-ms-win-downlevel-advapi32-l1-1-0.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\advapi32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcrt4.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sspicli.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptbase.dllcryptbase.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\iertutil.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dllapi-ms-win-downlevel-version-l1-1-0.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dllapi-ms-win-downlevel-user32-l1-1-0.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\user32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gdi32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\lpk.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\usp10.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dllapi-ms-win-downlevel-normaliz-l1-1-0.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\normaliz.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dllapi-ms-win-downlevel-shlwapi-l1-1-0.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shlwapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaut32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\comdlg32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dllapi-ms-win-downlevel-ole32-l1-1-0.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\userenv.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\profapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\urlmon.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ws2_32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nsi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\clbcatq.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dllbcryptprimitives.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\setupapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cfgmgr32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\devobj.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wintrust.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\crypt32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msasn1.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dllp2pcollab.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wldap32.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\UIAnimation.dllUIAnimation.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecsExt.dllWindowsCodecsExt.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msxml6.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\psapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\Wpc.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wevtapi.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mfplat.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\avrt.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtmlmedia.dllmshtmlmedia.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mf.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\atl.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ksuser.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\t2embed.dll
19/10/2019 - 3:45:45.325Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exe\Device\HarddiskVolume2
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64.dll
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64win.dll
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64cpu.dll
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\System32\wow64log.dll
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 3:45:45.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows
19/10/2019 - 3:45:45.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.340Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.340Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.340Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\mSecure
19/10/2019 - 3:45:45.340Open1488C:\Monitor\proc.exeC:\ProgramData\Syncovery
19/10/2019 - 3:45:45.340Open1488C:\Monitor\proc.exeC:\Program Files (x86)\FreshWebmaster\FreshFTP\FtpSites.SMF
19/10/2019 - 3:45:45.340Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\BitKinex\bitkinex.ds
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sechost.dll
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\version.DLL
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\version.dll
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:45.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imm32.dll
19/10/2019 - 3:45:45.403Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\UltraFXP\sites.xml
19/10/2019 - 3:45:45.403Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\FTP Now\sites.xml
19/10/2019 - 3:45:45.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Odin Secure FTP Expert\QFDefault.QFQ
19/10/2019 - 3:45:45.403Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Odin Secure FTP Expert\SiteInfo.QFP
19/10/2019 - 3:45:45.418Open1488C:\Monitor\proc.exeC:\Program Files (x86)\Foxmail\mail
19/10/2019 - 3:45:45.418Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nls
19/10/2019 - 3:45:45.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Globalization\Sorting\SortDefault.nlsSortDefault.nls
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dllapi-ms-win-downlevel-shell32-l1-1-0.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEFRAME.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE.Local
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEShims.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE.Local
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_5.82.7601.18837_none_ec86b8d6858ec0bc\comctl32.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcss.dll
19/10/2019 - 3:45:45.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rpcss.dll
19/10/2019 - 3:45:45.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 3:45:45.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\uxtheme.dll
19/10/2019 - 3:45:45.497Open1488C:\Monitor\proc.exeC:\
19/10/2019 - 3:45:45.497Unknown1488C:\Monitor\proc.exeC:\
19/10/2019 - 3:45:45.497Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Pocomail\accounts.ini
19/10/2019 - 3:45:45.497Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\Pocomail\accounts.ini
19/10/2019 - 3:45:45.497Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\GmailNotifierPro\ConfigData.xml
19/10/2019 - 3:45:45.497Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\DeskSoft\CheckMail
19/10/2019 - 3:45:45.497Open1488C:\Monitor\proc.exeC:\Program Files (x86)\WinFtp Client\Favorites.dat
19/10/2019 - 3:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\Secur32.dll
19/10/2019 - 3:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 3:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\secur32.dll
19/10/2019 - 3:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:45.512Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:45.512Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dllapi-ms-win-downlevel-advapi32-l2-1-0.dll
19/10/2019 - 3:45:45.575Open1488C:\Monitor\proc.exeC:\Windows\32BitFtp.TMP
19/10/2019 - 3:45:45.575Open1488C:\Monitor\proc.exeC:\Windows\32BitFtp.ini
19/10/2019 - 3:45:45.575Open1488C:\Monitor\proc.exeC:\FTP Navigator\Ftplist.txt
19/10/2019 - 3:45:45.575Open1488C:\Monitor\proc.exeC:\Softwarenetz\Mailing\Daten\mailing.vdt
19/10/2019 - 3:45:45.575Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Opera Mail\Opera Mail\wand.dat
19/10/2019 - 3:45:45.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\counters.dat
19/10/2019 - 3:45:45.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 3:45:45.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 3:45:45.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 3:45:45.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IPHLPAPI.DLL
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\WINNSI.DLL
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 3:45:45.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 3:45:45.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.637Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.637Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\yMail2\POP3.xml
19/10/2019 - 3:45:45.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\yMail2\SMTP.xml
19/10/2019 - 3:45:45.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\yMail2\Accounts.xml
19/10/2019 - 3:45:45.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\yMail\ymail.ini
19/10/2019 - 3:45:45.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\TrulyMail\Data\Settings\user.config
19/10/2019 - 3:45:45.700Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.700Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.747Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\To-Do DeskList\tasks.db
19/10/2019 - 3:45:45.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\stickies\images
19/10/2019 - 3:45:45.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\stickies\rtf
19/10/2019 - 3:45:45.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\NoteFly\notes
19/10/2019 - 3:45:45.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Conceptworld\Notezilla\Notes8.db
19/10/2019 - 3:45:45.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Sticky Notes\StickyNotes.snt
19/10/2019 - 3:45:45.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.747Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\CRYPTSP.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptsp.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rsaenh.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\RpcRtRemote.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dll
19/10/2019 - 3:45:45.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 3:45:45.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dll
19/10/2019 - 3:45:45.809Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\RpcRtRemote.dllRpcRtRemote.dll
19/10/2019 - 3:45:45.809Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.809Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.809Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.809Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.872Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.872Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.872Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.872Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ieproxy.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dllapi-ms-win-downlevel-shlwapi-l2-1-0.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\dwmapi.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dwmapi.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 3:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\sqmapi.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\bcrypt.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcrypt.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dll
19/10/2019 - 3:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dllbcryptprimitives.dll
19/10/2019 - 3:45:45.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dll
19/10/2019 - 3:45:45.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\bcryptprimitives.dllbcryptprimitives.dll
19/10/2019 - 3:45:45.918Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.918Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Documents
19/10/2019 - 3:45:45.918Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.918Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.981Open1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.981Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\Desktop
19/10/2019 - 3:45:45.981Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\Enpass
19/10/2019 - 3:45:45.981Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\My RoboForm Data
19/10/2019 - 3:45:45.981Open1488C:\Monitor\proc.exeC:\Users\Behemot\Documents\1Password
19/10/2019 - 3:45:45.981Open1488C:\Monitor\proc.exeC:\Monitor\Mikrotik\Winbox
19/10/2019 - 3:45:46.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\MSHTML.dll
19/10/2019 - 3:45:46.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 3:45:46.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 3:45:46.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\d2d1.dll
19/10/2019 - 3:45:46.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 3:45:46.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d2d1.dll
19/10/2019 - 3:45:46.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\DWrite.dll
19/10/2019 - 3:45:46.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 3:45:46.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DWrite.dll
19/10/2019 - 3:45:46.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\dxgi.dll
19/10/2019 - 3:45:46.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 3:45:46.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dxgi.dll
19/10/2019 - 3:45:46.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:46.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\DXGIDebug.dll
19/10/2019 - 3:45:46.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DXGIDebug.dll
19/10/2019 - 3:45:46.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\DXGIDebug.dll
19/10/2019 - 3:45:46.43Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:46.43Open1488C:\Monitor\proc.exeC:\Monitor\NETAPI32.DLL
19/10/2019 - 3:45:46.43Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\netapi32.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\netapi32.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Monitor\netutils.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\netutils.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Monitor\srvcli.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\srvcli.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\srvcli.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Monitor\wkscli.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\wkscli.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\wkscli.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Monitor\SAMCLI.DLL
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\samcli.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Monitor\SAMLIB.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\samlib.dll
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:46.59Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:46.59Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:46.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE.Local
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\apphelp.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\apphelp.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\MLANG.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mlang.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\PROPSYS.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:46.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\History.IE5
19/10/2019 - 3:45:46.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\History.IE5
19/10/2019 - 3:45:46.168Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\DNSAPI.dll
19/10/2019 - 3:45:46.168Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 3:45:46.168Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 3:45:46.168Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:46.168Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:46.168Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:46.168Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:46.168Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:46.168Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:46.168Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 3:45:46.168Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\mswsock.dll
19/10/2019 - 3:45:46.247Open1488C:\Monitor\proc.exeC:\Monitor\DNSAPI.dll
19/10/2019 - 3:45:46.247Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 3:45:46.247Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 3:45:46.247Open1488C:\Monitor\proc.exeC:\Monitor\IPHLPAPI.DLL
19/10/2019 - 3:45:46.247Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 3:45:46.247Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\IPHLPAPI.DLL
19/10/2019 - 3:45:46.247Open1488C:\Monitor\proc.exeC:\Monitor\WINNSI.DLL
19/10/2019 - 3:45:46.247Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 3:45:46.247Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\winnsi.dll
19/10/2019 - 3:45:46.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 3:45:46.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wininet.dll
19/10/2019 - 3:45:46.387Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\dhcpcsvc6.DLL
19/10/2019 - 3:45:46.387Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dll
19/10/2019 - 3:45:46.387Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 3:45:46.387Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dll
19/10/2019 - 3:45:46.387Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 3:45:46.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\dhcpcsvc.DLL
19/10/2019 - 3:45:46.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 3:45:46.434Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\dhcpcsvc.dll
19/10/2019 - 3:45:46.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:46.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:46.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:46.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:46.637Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:46.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:46.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:46.637Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:46.637Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:46.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEUI.dll
19/10/2019 - 3:45:46.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 3:45:46.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieui.dll
19/10/2019 - 3:45:46.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\SXS.DLL
19/10/2019 - 3:45:46.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 3:45:46.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\sxs.dll
19/10/2019 - 3:45:46.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:46.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.809Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\stdole2.tlb
19/10/2019 - 3:45:46.903Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\MLANG.dll
19/10/2019 - 3:45:46.903Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 3:45:46.903Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\mlang.dll
19/10/2019 - 3:45:46.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\TZGFZZAN.txt
19/10/2019 - 3:45:46.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\TZGFZZAN.txt
19/10/2019 - 3:45:46.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3L3U065O.txt
19/10/2019 - 3:45:46.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3L3U065O.txt
19/10/2019 - 3:45:46.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 3:45:46.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 3:45:46.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\rasadhlp.dll
19/10/2019 - 3:45:46.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 3:45:46.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\
19/10/2019 - 3:45:46.997Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x0000000000000000.db
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 3:45:46.997Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:46.997Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.997Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 3:45:46.997Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Favorites\desktop.ini
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 3:45:46.997Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\desktop.ini
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\propsys.dll
19/10/2019 - 3:45:46.997Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\propsys.dll
19/10/2019 - 3:45:47.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 3:45:47.12Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore
19/10/2019 - 3:45:47.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 3:45:47.12Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt
19/10/2019 - 3:45:47.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\imagestore\iwbzmlt\imagestore.datimagestore.dat
19/10/2019 - 3:45:47.12Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\iconcache
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.12Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:47.12Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:47.12Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.12Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.12Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.12Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.12Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.12Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 3:45:47.28Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\FWPUCLNT.DLL
19/10/2019 - 3:45:47.90Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\Internet Explorer\url.dll
19/10/2019 - 3:45:47.90Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\Desktop\url.dll
19/10/2019 - 3:45:47.90Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\url.dll
19/10/2019 - 3:45:47.90Open344C:\Program Files\Internet Explorer\iexplore.exeC:\Windows\System32\api-ms-win-core-winrt-string-l1-1-0.dll
19/10/2019 - 3:45:47.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 3:45:47.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ole32.dll
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:47.90Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFD1718DC1740FD3E9.TMP~DFD1718DC1740FD3E9.TMP
19/10/2019 - 3:45:47.90Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\RecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.datRecoveryStore.{53F4D046-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:47.90Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Temp\~DFC46E3D782D836128.TMP~DFC46E3D782D836128.TMP
19/10/2019 - 3:45:47.90Read344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Write344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.90Unknown344C:\Program Files\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\Recovery\High\Active\{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat{53F4D048-4F1B-11E8-8B8A-525400842A13}.dat
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WSHTCPIP.DLL
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wship6.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:47.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\wshqos.dll
19/10/2019 - 3:45:47.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:47.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:47.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1JFRXDED.txt
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3SDSPJA6.txt
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\U0Z9OWM1.txt
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:47.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:47.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htm
19/10/2019 - 3:45:47.465Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.465Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.465Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 3:45:47.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\mshtml.dll
19/10/2019 - 3:45:47.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.Manifest
19/10/2019 - 3:45:47.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\WindowsShell.ManifestWindowsShell.Manifest
19/10/2019 - 3:45:47.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE.Local
19/10/2019 - 3:45:47.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:47.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:47.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\winsxs\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.7601.18837_none_41e855142bd5705d
19/10/2019 - 3:45:47.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htm
19/10/2019 - 3:45:47.590Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\pt-br[1].htmpt-br[1].htm
19/10/2019 - 3:45:47.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 3:45:47.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Monitor\rasadhlp.dll
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Windows\SysWOW64\rasadhlp.dll
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.653Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.653Write1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.653Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.653Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.653Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.653Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.653Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.653Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.653Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.653Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.668Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.668Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.668Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.684Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.684Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.684Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.684Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.684Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.731Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 3:45:47.731Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\netprofm.dll
19/10/2019 - 3:45:47.731Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 3:45:47.731Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\nlaapi.dll
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.731Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.731Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.731Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.747Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 3:45:47.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 3:45:47.747Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 3:45:47.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 3:45:47.747Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 3:45:47.747Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 3:45:47.762Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 3:45:47.762Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 3:45:47.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 3:45:47.809Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\npmproxy.dll
19/10/2019 - 3:45:47.825Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 3:45:47.825Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 3:45:47.825Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 3:45:47.825Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Credentials
19/10/2019 - 3:45:47.825Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 3:45:47.825Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 3:45:47.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].js
19/10/2019 - 3:45:47.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].js
19/10/2019 - 3:45:47.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 3:45:47.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].js
19/10/2019 - 3:45:47.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].js
19/10/2019 - 3:45:47.887Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 3:45:47.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gif
19/10/2019 - 3:45:47.903Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gife151e5[1].gif
19/10/2019 - 3:45:47.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:47.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:47.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:47.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:47.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:47.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer
19/10/2019 - 3:45:47.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 3:45:47.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\MSIMGSIZ.DAT
19/10/2019 - 3:45:47.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].png
19/10/2019 - 3:45:47.903Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 3:45:47.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:47.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:47.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:47.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:47.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:47.918Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:47.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 3:45:47.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msimtf.dll
19/10/2019 - 3:45:47.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\OLEACC.DLL
19/10/2019 - 3:45:47.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 3:45:47.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleacc.dll
19/10/2019 - 3:45:47.918Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\OLEACCRC.DLL
19/10/2019 - 3:45:47.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 3:45:47.934Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\oleaccrc.dll
19/10/2019 - 3:45:47.934Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 3:45:47.934Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 3:45:47.934Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 3:45:47.934Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Local\Microsoft\Credentials
19/10/2019 - 3:45:47.934Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 3:45:47.934Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles
19/10/2019 - 3:45:47.934Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 3:45:47.934Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC\C5D812.lck
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.950Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.950Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.950Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.950Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.950Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.950Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.950Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.950Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:47.950Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:47.965Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dll
19/10/2019 - 3:45:48.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 3:45:48.75Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dll
19/10/2019 - 3:45:48.75Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\WindowsCodecs.dllWindowsCodecs.dll
19/10/2019 - 3:45:48.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\e151e5[1].gife151e5[1].gif
19/10/2019 - 3:45:48.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:48.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:48.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.90Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.90Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.90Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.90Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.90Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.90Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.90Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.90Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\credssp.dll
19/10/2019 - 3:45:48.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 3:45:48.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\credssp.dll
19/10/2019 - 3:45:48.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 3:45:48.90Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\schannel.dll
19/10/2019 - 3:45:48.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 3:45:48.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.106Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ncrypt.dll
19/10/2019 - 3:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 3:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ncrypt.dll
19/10/2019 - 3:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.137Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.137Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\GPAPI.dll
19/10/2019 - 3:45:48.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 3:45:48.153Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\gpapi.dll
19/10/2019 - 3:45:48.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:48.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:48.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.153Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.153Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.153Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.168Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.168Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.168Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.168Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.168Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.168Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.184Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.184Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.184Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.184Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Monitor\Files\DeletedFiles\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Delete1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.184Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.184Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.184Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:48.262Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 3:45:48.262Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 3:45:48.262Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB8MKSg[1].pngBB8MKSg[1].png
19/10/2019 - 3:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAIW2Az[1].jpg
19/10/2019 - 3:45:48.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAIW2Az[1].jpgAAIW2Az[1].jpg
19/10/2019 - 3:45:48.262Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAIW2Az[1].jpgAAIW2Az[1].jpg
19/10/2019 - 3:45:48.262Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\AAIW2Az[1].jpgAAIW2Az[1].jpg
19/10/2019 - 3:45:48.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.262Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.278Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.278Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001
19/10/2019 - 3:45:48.278Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.278Write1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Crypto\RSA\S-1-5-21-2148495166-3420019059-1286093062-1001\883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c883369258f3eede52e0da11e02ceddd7_fa25e266-6d0f-4de2-813a-bf4374e0628c
19/10/2019 - 3:45:48.293Open1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 3:45:48.293Unknown1488C:\Monitor\proc.exeC:\Users\Behemot\AppData\Roaming\373FCC
19/10/2019 - 3:45:48.293Open1488C:\Monitor\proc.exeC:\Monitor\proc.exe
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\d3d11.dll
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d11.dll
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\D3D10Warp.dll
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 3:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 3:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\iexplore.exe
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 3:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 3:45:48.340Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dll
19/10/2019 - 3:45:48.340Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\d3d10warp.dlld3d10warp.dll
19/10/2019 - 3:45:48.356Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.356Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.403Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].png
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].pngBBNUXxq[1].png
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].pngBBNUXxq[1].png
19/10/2019 - 3:45:48.403Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].pngBBNUXxq[1].png
19/10/2019 - 3:45:48.403Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BBNUXxq[1].pngBBNUXxq[1].png
19/10/2019 - 3:45:48.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8
19/10/2019 - 3:45:48.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kKVy[1].png
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kKVy[1].pngBB1kKVy[1].png
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kKVy[1].pngBB1kKVy[1].png
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kKVy[1].pngBB1kKVy[1].png
19/10/2019 - 3:45:48.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\BB1kKVy[1].pngBB1kKVy[1].png
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.434Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dll
19/10/2019 - 3:45:48.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dllp2pcollab.dll
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dll
19/10/2019 - 3:45:48.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\p2pcollab.dllp2pcollab.dll
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\qagentrt.dll
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dnsapi.dll
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\cryptnet.dll
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 3:45:48.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\cryptnet.dll
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_167DB4E3AB356C5B50FAA8944D554776
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0270780F846F08BEFE0DD8112D932FEF
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\SensApi.dll
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\SensApi.dll
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\Certificates
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CRLs
19/10/2019 - 3:45:48.465Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My\CTLs
19/10/2019 - 3:45:48.465Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\SystemCertificates\My
19/10/2019 - 3:45:48.543Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\8a-19583d-17636285[1].css8a-19583d-17636285[1].css
19/10/2019 - 3:45:48.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 3:45:48.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 3:45:48.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAIW2VM[1].jpg
19/10/2019 - 3:45:48.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAIW2VM[1].jpgAAIW2VM[1].jpg
19/10/2019 - 3:45:48.559Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAIW2VM[1].jpgAAIW2VM[1].jpg
19/10/2019 - 3:45:48.559Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\AAIW2VM[1].jpgAAIW2VM[1].jpg
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_167DB4E3AB356C5B50FAA8944D554776
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0270780F846F08BEFE0DD8112D932FEF
19/10/2019 - 3:45:48.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_5FA8E5E800867BF860DF5E533E701BAF
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\85B3F147E3624A14E6A20DB4F6C2C5D9
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_5FA8E5E800867BF860DF5E533E701BAF
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\85B3F147E3624A14E6A20DB4F6C2C5D9
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:48.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.590Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:48.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xml
19/10/2019 - 3:45:48.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 3:45:48.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xml
19/10/2019 - 3:45:48.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 3:45:48.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xml
19/10/2019 - 3:45:48.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\XmlLite.dll
19/10/2019 - 3:45:48.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 3:45:48.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\xmllite.dll
19/10/2019 - 3:45:48.668Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Internet Explorer\DOMStore\O7SUU5RP\www.msn[1].xmlwww.msn[1].xml
19/10/2019 - 3:45:48.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].js
19/10/2019 - 3:45:48.668Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 3:45:48.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\adswrappermsni[1].jsadswrappermsni[1].js
19/10/2019 - 3:45:48.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].js
19/10/2019 - 3:45:48.668Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 3:45:48.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\jquery-2.1.1.min[1].jsjquery-2.1.1.min[1].js
19/10/2019 - 3:45:48.668Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.668Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.668Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\EHQ10TF8\85-0f8009-68ddb2ab[1].js85-0f8009-68ddb2ab[1].js
19/10/2019 - 3:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\times.ttf
19/10/2019 - 3:45:48.700Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\segoeui.ttf
19/10/2019 - 3:45:48.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\WINHTTP.dll
19/10/2019 - 3:45:48.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 3:45:48.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winhttp.dll
19/10/2019 - 3:45:48.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\webio.dll
19/10/2019 - 3:45:48.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 3:45:48.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\webio.dll
19/10/2019 - 3:45:48.762Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\KernelBase.dll.mui
19/10/2019 - 3:45:48.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\arial.ttf
19/10/2019 - 3:45:48.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\arial.ttf
19/10/2019 - 3:45:48.887Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisym.ttf
19/10/2019 - 3:45:48.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisym.ttf
19/10/2019 - 3:45:48.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisym.ttf
19/10/2019 - 3:45:48.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.dat
19/10/2019 - 3:45:48.903Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 3:45:48.903Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\StaticCache.datStaticCache.dat
19/10/2019 - 3:45:48.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 3:45:48.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH
19/10/2019 - 3:45:48.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AAIVV2v[1].jpg
19/10/2019 - 3:45:48.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\dhcpcsvc6.DLL
19/10/2019 - 3:45:48.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dll
19/10/2019 - 3:45:48.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 3:45:48.903Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dll
19/10/2019 - 3:45:48.903Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc6.dlldhcpcsvc6.dll
19/10/2019 - 3:45:48.934Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AAIVV2v[1].jpgAAIVV2v[1].jpg
19/10/2019 - 3:45:48.934Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AAIVV2v[1].jpgAAIVV2v[1].jpg
19/10/2019 - 3:45:48.934Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\NJ54RMQH\AAIVV2v[1].jpgAAIVV2v[1].jpg
19/10/2019 - 3:45:49.59Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.59Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.59Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.59Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.75Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.90Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\ieframe.dll
19/10/2019 - 3:45:49.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\dhcpcsvc.DLL
19/10/2019 - 3:45:49.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 3:45:49.122Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\dhcpcsvc.dll
19/10/2019 - 3:45:49.262Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 3:45:49.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 3:45:49.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff
19/10/2019 - 3:45:49.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff4996b9[1].woff
19/10/2019 - 3:45:49.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff
19/10/2019 - 3:45:49.278Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff4996b9[1].woff
19/10/2019 - 3:45:49.278Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff4996b9[1].woff
19/10/2019 - 3:45:49.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\seguisym.ttf
19/10/2019 - 3:45:49.293Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\Fonts\simsun.ttc
19/10/2019 - 3:45:49.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 3:45:49.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\pt-BR\jscript9.dll.mui
19/10/2019 - 3:45:49.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\jscript9.dll
19/10/2019 - 3:45:49.418Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 3:45:49.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF
19/10/2019 - 3:45:49.418Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB8MCbK[1].png
19/10/2019 - 3:45:49.418Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB8MCbK[1].pngBB8MCbK[1].png
19/10/2019 - 3:45:49.418Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB8MCbK[1].pngBB8MCbK[1].png
19/10/2019 - 3:45:49.418Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB8MCbK[1].pngBB8MCbK[1].png
19/10/2019 - 3:45:49.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\BB8MCbK[1].pngBB8MCbK[1].png
19/10/2019 - 3:45:49.418Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.418Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.418Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.418Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.418Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.418Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.434Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.450Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.450Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 3:45:49.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 3:45:49.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 3:45:49.528Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\tzres.dll
19/10/2019 - 3:45:49.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 3:45:49.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 3:45:49.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 3:45:49.622Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\msctf.dll
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.747Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.747Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.778Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\api-ms-win-core-winrt-l1-1-0.dll
19/10/2019 - 3:45:49.840Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff
19/10/2019 - 3:45:49.840Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff4996b9[1].woff
19/10/2019 - 3:45:49.840Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff4996b9[1].woff
19/10/2019 - 3:45:49.840Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff
19/10/2019 - 3:45:49.840Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff4996b9[1].woff
19/10/2019 - 3:45:49.840Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\4996b9[1].woff4996b9[1].woff
19/10/2019 - 3:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 3:45:49.965Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\M4DVBFFQ.txt
19/10/2019 - 3:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619EDC238BFF48A31D55A97E1E93892934B_C31B2498754E340573F1336DE607D619
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_4AD9ADFD858BEA6F13F2279EC0DA1469
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\521F25E202FF760B8461B88413F425E7
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\CFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288BCFE86DBBE02D859DC92F1E17E0574EE8_46766FC45507C0B9E264E4C18BC7288B
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_4AD9ADFD858BEA6F13F2279EC0DA1469
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\521F25E202FF760B8461B88413F425E7
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:49.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:49.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.278Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.278Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.293Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.293Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.293Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.293Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.293Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.293Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.293Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.293Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.293Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:50.309Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.309Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0BE8B021F9E811DFC8C8A28572A17C05A_9D6748DE970CF6CF9A4F5E684CFDF1A0
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\cversions.1.db
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Caches\{AFBF9F1A-8EE8-4C77-AF34-C647E37CA0D9}.1.ver0x0000000000000000.db
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 3:45:50.559Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\desktop.ini
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 3:45:50.559Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows
19/10/2019 - 3:45:50.559Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 3:45:50.559Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\History\desktop.ini
19/10/2019 - 3:45:50.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 3:45:50.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\shell32.dll
19/10/2019 - 3:45:50.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\a5ea21[1].ico
19/10/2019 - 3:45:50.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\4RCRTXD2\a5ea21[1].icoa5ea21[1].ico
19/10/2019 - 3:45:50.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\49KMG096.txt
19/10/2019 - 3:45:50.637Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\49KMG096.txt
19/10/2019 - 3:45:50.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\POWRPROF.DLL
19/10/2019 - 3:45:50.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 3:45:50.637Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\powrprof.dll
19/10/2019 - 3:45:50.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:50.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:50.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:50.997Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\1X8RXE18.txt
19/10/2019 - 3:45:51.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 3:45:51.106Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\S5MKAZSW.txt
19/10/2019 - 3:45:51.106Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 3:45:51.106Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0SX9NXYL.txt
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:51.184Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:51.184Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:51.184Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:51.184Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\6BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA734753452036BADA8974A10C4BD62CC921D13E43B18_D9817BD5013875AD517DA73475345203
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_62391B1AED35BD255C4468CBC05D99E2
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.184Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C5D328B175B1E9E27383784E842FE47D
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_62391B1AED35BD255C4468CBC05D99E2
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\C5D328B175B1E9E27383784E842FE47D
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.231Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.231Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.372Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.372Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.387Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.387Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\ImgUtil.dll
19/10/2019 - 3:45:51.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 3:45:51.434Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\imgutil.dll
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:51.575Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:51.575Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.590Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.606Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.715Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.825Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.840Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:51.840Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:51.840Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.840Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\70M567I3.txt
19/10/2019 - 3:45:51.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:51.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies
19/10/2019 - 3:45:51.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.872Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\0PE6U2PK.txt
19/10/2019 - 3:45:51.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].js
19/10/2019 - 3:45:51.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].js
19/10/2019 - 3:45:51.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 3:45:51.965Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].js
19/10/2019 - 3:45:51.965Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 3:45:51.965Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\A6STR8JF\ast[1].jsast[1].js
19/10/2019 - 3:45:51.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Program Files (x86)\Internet Explorer\WINMM.dll
19/10/2019 - 3:45:51.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 3:45:51.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Windows\SysWOW64\winmm.dll
19/10/2019 - 3:45:51.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3GKPXVZT.txt
19/10/2019 - 3:45:51.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\Roaming\Microsoft\Windows\Cookies\3GKPXVZT.txt
19/10/2019 - 3:45:51.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:51.981Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.981Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:51.981Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.40Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.40Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.40Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.40Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.40Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.40Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.40Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.43Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.43Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.168Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.168Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.168Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.168Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.168Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.227Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.227Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.227Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.227Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.227Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.227Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\0177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB90177A2B8C3D6561744552D69E6BD54B0_4BCF1A3569F4A008C96D5FC9C62E8FB9
19/10/2019 - 3:45:52.352Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.352Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.352Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.352Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.352Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.352Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content
19/10/2019 - 3:45:52.352Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Write1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.352Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\Content\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.368Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.368Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.368Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.368Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow
19/10/2019 - 3:45:52.368Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.368Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.368Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.368Unknown1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData
19/10/2019 - 3:45:52.368Open1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.368Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.368Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exeC:\Users\Behemot\AppData\LocalLow\Microsoft\CryptnetUrlCache\MetaData\2856786A80F7407460319F6665E92A122856786A80F7407460319F6665E92A12
19/10/2019 - 3:45:52.368Read1500C:\Program Files (x86)\Internet Explorer\iexplore.exe