PID | API | Arguments |
---|---|---|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2560 | NtAllocateVirtualMemory |
|
2636 | NtAllocateVirtualMemory |
|
2636 | NtAllocateVirtualMemory |
|
2636 | NtAllocateVirtualMemory |
|
2636 | NtAllocateVirtualMemory |
|
2636 | NtAllocateVirtualMemory |
|
2636 | NtAllocateVirtualMemory |
|
PID | API | Arguments |
---|---|---|
2560 | CreateServiceW |
|
Yara Pattern Name | Description |
---|---|
IsPE32 | No Description Available |
ImportTableIsBad | ImportTable Check |
HasRichSignature | Rich Signature Check |
Name | Virtual Address | Virtual Size | Size of Raw Data | Entropy |
---|---|---|---|---|
.text | 0x00001000 | 0x001a1292 | 0x001a1400 | 7.15068138242 |
.rsrc | 0x001a3000 | 0x0000115c | 0x00001200 | 5.52354564259 |
Name | Offset | Size | Language | Sub-language | File type |
---|---|---|---|---|---|
RT_ICON | 0x001a30a0 | 0x000010a8 | LANG_ENGLISH | SUBLANG_ENGLISH_US | Device independent bitmap graphic, 32 x 64 x 32, image size 0 |
RT_GROUP_ICON | 0x001a4148 | 0x00000014 | LANG_ENGLISH | SUBLANG_ENGLISH_US | MS Windows icon resource - 1 icon, 32x32 |
Domain | IP Address | Destination Location |
---|---|---|
google.com | 172.217.13.78 | US |
GET / HTTP/1.1 Host: google.com
IP Address | Country of Origin |
---|---|
200.87.164.69 | BO |
200.119.204.12 | BO |
172.217.23.174 | US |
190.186.45.170 | BO |
Process Name | PID | Parent PID |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2560 | 2536 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142697.2 | NtOpenFile |
| Status SUCCESS | |
1602142697.2 | NtQueryInformationFile |
| Status SUCCESS | |
1602142697.2 | NtClose |
| Status SUCCESS | |
1602142697.2 | 58 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142697.21 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142697.21 | GetSystemInfo |
| Status SUCCESS | |
1602142697.21 | NtOpenKey |
| Status SUCCESS | |
1602142697.21 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142697.21 | NtQueryValueKey |
| Status SUCCESS | |
1602142697.21 | NtClose |
| Status SUCCESS |
geoswEAk.exe | 2636 | 2560 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142698.01 | NtOpenFile |
| Status SUCCESS | |
1602142698.01 | NtQueryInformationFile |
| Status SUCCESS | |
1602142698.01 | NtClose |
| Status SUCCESS | |
1602142698.01 | 44 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142698.04 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142698.04 | GetSystemInfo |
| Status SUCCESS | |
1602142698.04 | NtOpenKey |
| Status SUCCESS | |
1602142698.04 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142698.04 | NtQueryValueKey |
| Status SUCCESS | |
1602142698.04 | NtClose |
| Status SUCCESS |
cmd.exe | 2768 | 2560 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142699.01 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142699.01 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142699.01 | NtOpenThread |
| Status SUCCESS | |
1602142699.01 | LdrGetDllHandle |
| Status SUCCESS | |
1602142699.01 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142699.01 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142699.01 | RegOpenKeyExW |
| Status SUCCESS | |
1602142699.01 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142699.01 | RegQueryValueExW |
| Status SUCCESS | |
1602142699.01 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 2824 | 2560 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142699.19 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142699.19 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142699.21 | LdrLoadDll |
| Status SUCCESS | |
1602142699.21 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142699.21 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142699.21 | NtCreateFile |
| Status SUCCESS | |
1602142699.21 | NtCreateSection |
| Status SUCCESS | |
1602142699.21 | NtMapViewOfSection |
| Status SUCCESS | |
1602142699.21 | 2 | NtClose |
| Status SUCCESS |
1602142699.21 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2916 | 2768 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142699.27 | NtOpenFile |
| Status SUCCESS | |
1602142699.27 | NtQueryInformationFile |
| Status SUCCESS | |
1602142699.27 | NtClose |
| Status SUCCESS | |
1602142699.27 | 11 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142699.29 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142699.29 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142699.29 | LdrLoadDll |
| Status SUCCESS | |
1602142699.29 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142699.29 | NtOpenKey |
| Status SUCCESS | |
1602142699.29 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 2952 | 2560 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142699.3 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142699.3 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142699.3 | LdrLoadDll |
| Status SUCCESS | |
1602142699.3 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142699.3 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142699.3 | NtCreateFile |
| Status SUCCESS | |
1602142699.3 | NtCreateSection |
| Status SUCCESS | |
1602142699.3 | NtMapViewOfSection |
| Status SUCCESS | |
1602142699.3 | 2 | NtClose |
| Status SUCCESS |
1602142699.3 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3016 | 2560 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142699.38 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142699.38 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142699.38 | NtOpenThread |
| Status SUCCESS | |
1602142699.38 | LdrGetDllHandle |
| Status SUCCESS | |
1602142699.38 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142699.38 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142699.38 | RegOpenKeyExW |
| Status SUCCESS | |
1602142699.38 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142699.38 | RegQueryValueExW |
| Status SUCCESS | |
1602142699.38 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 2864 | 2560 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142699.49 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142699.49 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142699.49 | LdrLoadDll |
| Status SUCCESS | |
1602142699.49 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142699.49 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142699.49 | NtCreateFile |
| Status SUCCESS | |
1602142699.49 | NtCreateSection |
| Status SUCCESS | |
1602142699.49 | NtMapViewOfSection |
| Status SUCCESS | |
1602142699.49 | 2 | NtClose |
| Status SUCCESS |
1602142699.49 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2132 | 3016 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142699.58 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142699.58 | NtClose |
| Status SUCCESS | |
1602142699.58 | NtOpenKey |
| Status SUCCESS | |
1602142699.58 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142699.58 | NtClose |
| Status SUCCESS | |
1602142699.58 | NtOpenKey |
| Status SUCCESS | |
1602142699.58 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142699.58 | NtClose |
| Status SUCCESS | |
1602142699.58 | LdrLoadDll |
| Status SUCCESS | |
1602142699.58 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 2176 | 2916 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142700.08 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142700.08 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142700.08 | NtOpenThread |
| Status SUCCESS | |
1602142700.08 | LdrGetDllHandle |
| Status SUCCESS | |
1602142700.08 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142700.08 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142700.08 | RegOpenKeyExW |
| Status SUCCESS | |
1602142700.08 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142700.08 | RegQueryValueExW |
| Status SUCCESS | |
1602142700.08 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 1036 | 2916 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142700.3 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142700.3 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142700.3 | LdrLoadDll |
| Status SUCCESS | |
1602142700.3 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142700.3 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142700.3 | NtCreateFile |
| Status SUCCESS | |
1602142700.3 | NtCreateSection |
| Status SUCCESS | |
1602142700.32 | NtMapViewOfSection |
| Status SUCCESS | |
1602142700.32 | 2 | NtClose |
| Status SUCCESS |
1602142700.32 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2400 | 2176 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142700.46 | NtOpenFile |
| Status SUCCESS | |
1602142700.46 | NtQueryInformationFile |
| Status SUCCESS | |
1602142700.46 | NtClose |
| Status SUCCESS | |
1602142700.46 | 59 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142700.47 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142700.47 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142700.47 | LdrLoadDll |
| Status SUCCESS | |
1602142700.47 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142700.47 | NtOpenKey |
| Status SUCCESS | |
1602142700.47 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 2432 | 2916 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142700.53 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142700.53 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142700.53 | LdrLoadDll |
| Status SUCCESS | |
1602142700.53 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142700.53 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142700.53 | NtCreateFile |
| Status SUCCESS | |
1602142700.53 | NtCreateSection |
| Status SUCCESS | |
1602142700.53 | NtMapViewOfSection |
| Status SUCCESS | |
1602142700.53 | 2 | NtClose |
| Status SUCCESS |
1602142700.53 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1880 | 2916 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142700.66 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142700.66 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142700.66 | LdrLoadDll |
| Status SUCCESS | |
1602142700.66 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142700.66 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142700.66 | NtCreateFile |
| Status SUCCESS | |
1602142700.66 | NtCreateSection |
| Status SUCCESS | |
1602142700.66 | NtMapViewOfSection |
| Status SUCCESS | |
1602142700.66 | 2 | NtClose |
| Status SUCCESS |
1602142700.66 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2616 | 2916 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142700.78 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142700.78 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142700.78 | NtOpenThread |
| Status SUCCESS | |
1602142700.78 | LdrGetDllHandle |
| Status SUCCESS | |
1602142700.78 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142700.78 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142700.78 | RegOpenKeyExW |
| Status SUCCESS | |
1602142700.78 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142700.78 | RegQueryValueExW |
| Status SUCCESS | |
1602142700.78 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2928 | 2616 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142701.25 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142701.25 | NtClose |
| Status SUCCESS | |
1602142701.25 | NtOpenKey |
| Status SUCCESS | |
1602142701.25 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142701.25 | NtClose |
| Status SUCCESS | |
1602142701.25 | NtOpenKey |
| Status SUCCESS | |
1602142701.25 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142701.25 | NtClose |
| Status SUCCESS | |
1602142701.25 | LdrLoadDll |
| Status SUCCESS | |
1602142701.25 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 2872 | 2400 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142701.92 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142701.92 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142701.92 | NtOpenThread |
| Status SUCCESS | |
1602142701.92 | LdrGetDllHandle |
| Status SUCCESS | |
1602142701.92 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142701.92 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142701.92 | RegOpenKeyExW |
| Status SUCCESS | |
1602142701.92 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142701.92 | RegQueryValueExW |
| Status SUCCESS | |
1602142701.92 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3044 | 2400 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142702.55 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142702.55 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142702.55 | LdrLoadDll |
| Status SUCCESS | |
1602142702.55 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142702.55 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142702.55 | NtCreateFile |
| Status SUCCESS | |
1602142702.55 | NtCreateSection |
| Status SUCCESS | |
1602142702.55 | NtMapViewOfSection |
| Status SUCCESS | |
1602142702.55 | 2 | NtClose |
| Status SUCCESS |
1602142702.55 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2884 | 2872 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142702.61 | NtOpenFile |
| Status SUCCESS | |
1602142702.61 | NtQueryInformationFile |
| Status SUCCESS | |
1602142702.61 | NtClose |
| Status SUCCESS | |
1602142702.61 | 72 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142702.63 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142702.63 | GetSystemInfo |
| Status SUCCESS | |
1602142702.63 | NtOpenKey |
| Status SUCCESS | |
1602142702.63 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142702.63 | NtQueryValueKey |
| Status SUCCESS | |
1602142702.64 | NtClose |
| Status SUCCESS |
reg.exe | 2084 | 2400 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142702.69 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142702.69 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142702.69 | LdrLoadDll |
| Status SUCCESS | |
1602142702.69 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142702.69 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142702.69 | NtCreateFile |
| Status SUCCESS | |
1602142702.69 | NtCreateSection |
| Status SUCCESS | |
1602142702.69 | NtMapViewOfSection |
| Status SUCCESS | |
1602142702.69 | 2 | NtClose |
| Status SUCCESS |
1602142702.69 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1908 | 2400 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142703.41 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142703.41 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142703.41 | LdrLoadDll |
| Status SUCCESS | |
1602142703.41 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142703.41 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142703.41 | NtCreateFile |
| Status SUCCESS | |
1602142703.41 | NtCreateSection |
| Status SUCCESS | |
1602142703.41 | NtMapViewOfSection |
| Status SUCCESS | |
1602142703.41 | 2 | NtClose |
| Status SUCCESS |
1602142703.41 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 1412 | 2400 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142703.75 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142703.75 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142703.75 | NtOpenThread |
| Status SUCCESS | |
1602142703.75 | LdrGetDllHandle |
| Status SUCCESS | |
1602142703.75 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142703.75 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142703.75 | RegOpenKeyExW |
| Status SUCCESS | |
1602142703.75 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142703.75 | RegQueryValueExW |
| Status SUCCESS | |
1602142703.75 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2376 | 2884 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142703.9 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142703.9 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142703.9 | NtOpenThread |
| Status SUCCESS | |
1602142703.9 | LdrGetDllHandle |
| Status SUCCESS | |
1602142703.9 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142703.9 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142703.9 | RegOpenKeyExW |
| Status SUCCESS | |
1602142703.9 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142703.9 | RegQueryValueExW |
| Status SUCCESS | |
1602142703.9 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 2284 | 2884 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142704.28 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142704.29 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142704.29 | LdrLoadDll |
| Status SUCCESS | |
1602142704.29 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142704.29 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142704.34 | NtCreateFile |
| Status SUCCESS | |
1602142704.34 | NtCreateSection |
| Status SUCCESS | |
1602142704.34 | NtMapViewOfSection |
| Status SUCCESS | |
1602142704.34 | 2 | NtClose |
| Status SUCCESS |
1602142704.34 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2540 | 1412 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142704.81 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142704.81 | NtClose |
| Status SUCCESS | |
1602142704.81 | NtOpenKey |
| Status SUCCESS | |
1602142704.81 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142704.81 | NtClose |
| Status SUCCESS | |
1602142704.81 | NtOpenKey |
| Status SUCCESS | |
1602142704.81 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142704.81 | NtClose |
| Status SUCCESS | |
1602142704.81 | LdrLoadDll |
| Status SUCCESS | |
1602142704.81 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 2344 | 2884 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142705.12 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142705.17 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142705.18 | LdrLoadDll |
| Status SUCCESS | |
1602142705.18 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142705.18 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142705.18 | NtCreateFile |
| Status SUCCESS | |
1602142705.18 | NtCreateSection |
| Status SUCCESS | |
1602142705.18 | NtMapViewOfSection |
| Status SUCCESS | |
1602142705.7 | 2 | NtClose |
| Status SUCCESS |
1602142705.7 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2784 | 2376 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142705.79 | NtOpenFile |
| Status SUCCESS | |
1602142705.81 | NtQueryInformationFile |
| Status SUCCESS | |
1602142705.81 | NtClose |
| Status SUCCESS | |
1602142705.81 | 27 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142705.85 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142705.85 | GetSystemInfo |
| Status SUCCESS | |
1602142705.85 | NtOpenKey |
| Status SUCCESS | |
1602142705.85 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142705.85 | NtQueryValueKey |
| Status SUCCESS | |
1602142705.85 | NtClose |
| Status SUCCESS |
reg.exe | 2068 | 2884 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142710.0 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142710.0 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142710.05 | LdrLoadDll |
| Status SUCCESS | |
1602142710.05 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142710.05 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142710.05 | NtCreateFile |
| Status SUCCESS | |
1602142710.05 | NtCreateSection |
| Status SUCCESS | |
1602142710.05 | NtMapViewOfSection |
| Status SUCCESS | |
1602142710.07 | 2 | NtClose |
| Status SUCCESS |
1602142710.07 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2984 | 2884 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142710.5 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142710.66 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142710.66 | NtOpenThread |
| Status SUCCESS | |
1602142710.66 | LdrGetDllHandle |
| Status SUCCESS | |
1602142710.66 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142710.66 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142710.66 | RegOpenKeyExW |
| Status SUCCESS | |
1602142710.66 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142710.66 | RegQueryValueExW |
| Status SUCCESS | |
1602142710.66 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 564 | 2784 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142710.5 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142710.85 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142710.85 | NtOpenThread |
| Status SUCCESS | |
1602142710.85 | LdrGetDllHandle |
| Status SUCCESS | |
1602142710.85 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142710.85 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142710.85 | RegOpenKeyExW |
| Status SUCCESS | |
1602142710.85 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142710.85 | RegQueryValueExW |
| Status SUCCESS | |
1602142710.85 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 1832 | 2784 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142712.31 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142712.31 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142712.31 | LdrLoadDll |
| Status SUCCESS | |
1602142712.31 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142712.31 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142712.31 | NtCreateFile |
| Status SUCCESS | |
1602142712.31 | NtCreateSection |
| Status SUCCESS | |
1602142712.31 | NtMapViewOfSection |
| Status SUCCESS | |
1602142712.31 | 2 | NtClose |
| Status SUCCESS |
1602142712.31 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2124 | 2984 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142713.42 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142713.42 | NtClose |
| Status SUCCESS | |
1602142713.42 | NtOpenKey |
| Status SUCCESS | |
1602142713.42 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142713.42 | NtClose |
| Status SUCCESS | |
1602142713.42 | NtOpenKey |
| Status SUCCESS | |
1602142713.42 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142713.42 | NtClose |
| Status SUCCESS | |
1602142713.42 | LdrLoadDll |
| Status SUCCESS | |
1602142713.42 | LdrGetProcedureAddress |
| Status SUCCESS |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 1856 | 564 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142713.3 | NtOpenFile |
| Status SUCCESS | |
1602142713.3 | NtQueryInformationFile |
| Status SUCCESS | |
1602142713.3 | NtClose |
| Status SUCCESS | |
1602142713.3 | 55 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142713.31 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142713.31 | GetSystemInfo |
| Status SUCCESS | |
1602142713.31 | NtOpenKey |
| Status SUCCESS | |
1602142713.31 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142713.31 | NtQueryValueKey |
| Status SUCCESS | |
1602142713.31 | NtClose |
| Status SUCCESS |
reg.exe | 2156 | 2784 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142714.86 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142714.86 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142714.86 | LdrLoadDll |
| Status SUCCESS | |
1602142714.86 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142714.86 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142714.87 | NtCreateFile |
| Status SUCCESS | |
1602142714.87 | NtCreateSection |
| Status SUCCESS | |
1602142714.87 | NtMapViewOfSection |
| Status SUCCESS | |
1602142714.87 | 2 | NtClose |
| Status SUCCESS |
1602142714.87 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2356 | 2784 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142715.85 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142715.85 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142715.85 | LdrLoadDll |
| Status SUCCESS | |
1602142715.85 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142715.85 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142715.85 | NtCreateFile |
| Status SUCCESS | |
1602142715.85 | NtCreateSection |
| Status SUCCESS | |
1602142715.85 | NtMapViewOfSection |
| Status SUCCESS | |
1602142715.85 | 2 | NtClose |
| Status SUCCESS |
1602142715.85 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2412 | 1856 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142717.45 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142717.49 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142717.49 | NtOpenThread |
| Status SUCCESS | |
1602142717.49 | LdrGetDllHandle |
| Status SUCCESS | |
1602142717.49 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142717.49 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142717.51 | RegOpenKeyExW |
| Status SUCCESS | |
1602142717.51 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142717.51 | RegQueryValueExW |
| Status SUCCESS | |
1602142717.51 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2380 | 2784 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142717.46 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142717.48 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142717.48 | NtOpenThread |
| Status SUCCESS | |
1602142717.48 | LdrGetDllHandle |
| Status SUCCESS | |
1602142717.48 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142717.48 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142717.48 | RegOpenKeyExW |
| Status SUCCESS | |
1602142717.48 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142717.48 | RegQueryValueExW |
| Status SUCCESS | |
1602142717.48 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 2556 | 1856 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142718.51 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142718.51 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142718.51 | LdrLoadDll |
| Status SUCCESS | |
1602142718.52 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142718.52 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142718.52 | NtCreateFile |
| Status SUCCESS | |
1602142718.52 | NtCreateSection |
| Status SUCCESS | |
1602142718.52 | NtMapViewOfSection |
| Status SUCCESS | |
1602142718.52 | 2 | NtClose |
| Status SUCCESS |
1602142718.52 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2900 | 2380 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142721.78 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142721.8 | NtClose |
| Status SUCCESS | |
1602142721.8 | NtOpenKey |
| Status SUCCESS | |
1602142721.8 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142721.8 | NtClose |
| Status SUCCESS | |
1602142721.8 | NtOpenKey |
| Status SUCCESS | |
1602142721.8 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142721.8 | NtClose |
| Status SUCCESS | |
1602142721.8 | LdrLoadDll |
| Status SUCCESS | |
1602142721.8 | LdrGetProcedureAddress |
| Status SUCCESS |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2168 | 2412 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142722.55 | NtOpenFile |
| Status SUCCESS | |
1602142722.55 | NtQueryInformationFile |
| Status SUCCESS | |
1602142722.55 | NtClose |
| Status SUCCESS | |
1602142722.55 | 7 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142722.58 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142722.58 | GetSystemInfo |
| Status SUCCESS | |
1602142722.58 | NtOpenKey |
| Status SUCCESS | |
1602142722.58 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142722.58 | NtQueryValueKey |
| Status SUCCESS | |
1602142722.58 | NtClose |
| Status SUCCESS |
reg.exe | 2816 | 1856 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142722.11 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142722.11 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142722.11 | LdrLoadDll |
| Status SUCCESS | |
1602142722.11 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142722.11 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142722.11 | NtCreateFile |
| Status SUCCESS | |
1602142722.11 | NtCreateSection |
| Status SUCCESS | |
1602142722.11 | NtMapViewOfSection |
| Status SUCCESS | |
1602142722.11 | 2 | NtClose |
| Status SUCCESS |
1602142722.13 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2896 | 1856 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142722.72 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142722.72 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142722.72 | LdrLoadDll |
| Status SUCCESS | |
1602142722.72 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142722.72 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142722.72 | NtCreateFile |
| Status SUCCESS | |
1602142722.72 | NtCreateSection |
| Status SUCCESS | |
1602142722.72 | NtMapViewOfSection |
| Status SUCCESS | |
1602142722.72 | 2 | NtClose |
| Status SUCCESS |
1602142722.73 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3036 | 1856 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142723.33 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142723.33 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142723.33 | NtOpenThread |
| Status SUCCESS | |
1602142723.33 | LdrGetDllHandle |
| Status SUCCESS | |
1602142723.33 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142723.33 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142723.33 | RegOpenKeyExW |
| Status SUCCESS | |
1602142723.33 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142723.33 | RegQueryValueExW |
| Status SUCCESS | |
1602142723.33 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2088 | 2168 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142724.68 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142724.68 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142724.68 | NtOpenThread |
| Status SUCCESS | |
1602142724.68 | LdrGetDllHandle |
| Status SUCCESS | |
1602142724.68 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142724.68 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142724.68 | RegOpenKeyExW |
| Status SUCCESS | |
1602142724.68 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142724.68 | RegQueryValueExW |
| Status SUCCESS | |
1602142724.68 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 1248 | 3036 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142724.61 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142724.62 | NtClose |
| Status SUCCESS | |
1602142724.62 | NtOpenKey |
| Status SUCCESS | |
1602142724.62 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142724.62 | NtClose |
| Status SUCCESS | |
1602142724.62 | NtOpenKey |
| Status SUCCESS | |
1602142724.62 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142724.62 | NtClose |
| Status SUCCESS | |
1602142724.62 | LdrLoadDll |
| Status SUCCESS | |
1602142724.62 | LdrGetProcedureAddress |
| Status SUCCESS |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2296 | 2088 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142725.14 | NtOpenFile |
| Status SUCCESS | |
1602142725.15 | NtQueryInformationFile |
| Status SUCCESS | |
1602142725.15 | NtClose |
| Status SUCCESS | |
1602142725.15 | 60 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142725.15 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142725.15 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142725.15 | LdrLoadDll |
| Status SUCCESS | |
1602142725.15 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142725.15 | NtOpenKey |
| Status SUCCESS | |
1602142725.15 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 2320 | 2168 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142726.28 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142726.28 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142726.28 | LdrLoadDll |
| Status SUCCESS | |
1602142726.28 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142726.28 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142726.28 | NtCreateFile |
| Status SUCCESS | |
1602142726.28 | NtCreateSection |
| Status SUCCESS | |
1602142726.28 | NtMapViewOfSection |
| Status SUCCESS | |
1602142726.28 | 2 | NtClose |
| Status SUCCESS |
1602142726.28 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1884 | 2168 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142725.17 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142725.17 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142725.17 | LdrLoadDll |
| Status SUCCESS | |
1602142725.17 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142725.17 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142725.17 | NtCreateFile |
| Status SUCCESS | |
1602142725.17 | NtCreateSection |
| Status SUCCESS | |
1602142725.17 | NtMapViewOfSection |
| Status SUCCESS | |
1602142725.17 | 2 | NtClose |
| Status SUCCESS |
1602142725.17 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2944 | 2168 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142725.21 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142725.21 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142725.21 | LdrLoadDll |
| Status SUCCESS | |
1602142725.21 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142725.21 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142725.21 | NtCreateFile |
| Status SUCCESS | |
1602142725.21 | NtCreateSection |
| Status SUCCESS | |
1602142725.21 | NtMapViewOfSection |
| Status SUCCESS | |
1602142725.23 | 2 | NtClose |
| Status SUCCESS |
1602142725.23 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2436 | 2168 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142727.12 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142727.12 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142727.12 | NtOpenThread |
| Status SUCCESS | |
1602142727.12 | LdrGetDllHandle |
| Status SUCCESS | |
1602142727.12 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142727.12 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142727.12 | RegOpenKeyExW |
| Status SUCCESS | |
1602142727.12 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142727.12 | RegQueryValueExW |
| Status SUCCESS | |
1602142727.12 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 1144 | 2296 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142728.27 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142728.27 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142728.27 | NtOpenThread |
| Status SUCCESS | |
1602142728.27 | LdrGetDllHandle |
| Status SUCCESS | |
1602142728.27 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142728.27 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142728.27 | RegOpenKeyExW |
| Status SUCCESS | |
1602142728.27 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142728.27 | RegQueryValueExW |
| Status SUCCESS | |
1602142728.27 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 1900 | 2436 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142728.37 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142728.37 | NtClose |
| Status SUCCESS | |
1602142728.37 | NtOpenKey |
| Status SUCCESS | |
1602142728.37 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142728.37 | NtClose |
| Status SUCCESS | |
1602142728.37 | NtOpenKey |
| Status SUCCESS | |
1602142728.37 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142728.37 | NtClose |
| Status SUCCESS | |
1602142728.37 | LdrLoadDll |
| Status SUCCESS | |
1602142728.37 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 2532 | 2296 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142728.61 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142728.61 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142728.61 | LdrLoadDll |
| Status SUCCESS | |
1602142728.61 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142728.61 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142728.61 | NtCreateFile |
| Status SUCCESS | |
1602142728.61 | NtCreateSection |
| Status SUCCESS | |
1602142728.61 | NtMapViewOfSection |
| Status SUCCESS | |
1602142728.61 | 2 | NtClose |
| Status SUCCESS |
1602142728.61 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1608 | 2296 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142728.83 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142728.83 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142728.83 | LdrLoadDll |
| Status SUCCESS | |
1602142728.83 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142728.85 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142728.85 | NtCreateFile |
| Status SUCCESS | |
1602142728.85 | NtCreateSection |
| Status SUCCESS | |
1602142728.85 | NtMapViewOfSection |
| Status SUCCESS | |
1602142728.85 | 2 | NtClose |
| Status SUCCESS |
1602142728.85 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 1340 | 1144 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142728.76 | NtOpenFile |
| Status SUCCESS | |
1602142728.76 | NtQueryInformationFile |
| Status SUCCESS | |
1602142728.76 | NtClose |
| Status SUCCESS | |
1602142728.76 | 11 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142728.76 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142728.76 | GetSystemInfo |
| Status SUCCESS | |
1602142728.76 | NtOpenKey |
| Status SUCCESS | |
1602142728.76 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142728.76 | NtQueryValueKey |
| Status SUCCESS | |
1602142728.76 | NtClose |
| Status SUCCESS |
reg.exe | 1068 | 2296 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142729.32 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142729.32 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142729.32 | LdrLoadDll |
| Status SUCCESS | |
1602142729.32 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142729.32 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142729.32 | NtCreateFile |
| Status SUCCESS | |
1602142729.32 | NtCreateSection |
| Status SUCCESS | |
1602142729.32 | NtMapViewOfSection |
| Status SUCCESS | |
1602142729.32 | 2 | NtClose |
| Status SUCCESS |
1602142729.32 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2920 | 2296 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142729.32 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142729.32 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142729.32 | NtOpenThread |
| Status SUCCESS | |
1602142729.32 | LdrGetDllHandle |
| Status SUCCESS | |
1602142729.33 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142729.33 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142729.33 | RegOpenKeyExW |
| Status SUCCESS | |
1602142729.33 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142729.33 | RegQueryValueExW |
| Status SUCCESS | |
1602142729.33 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 1788 | 2920 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142730.88 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142730.88 | NtClose |
| Status SUCCESS | |
1602142730.88 | NtOpenKey |
| Status SUCCESS | |
1602142730.88 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142730.88 | NtClose |
| Status SUCCESS | |
1602142730.88 | NtOpenKey |
| Status SUCCESS | |
1602142730.88 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142730.88 | NtClose |
| Status SUCCESS | |
1602142730.88 | LdrLoadDll |
| Status SUCCESS | |
1602142730.88 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 2468 | 1340 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142730.95 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142730.95 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142730.95 | NtOpenThread |
| Status SUCCESS | |
1602142730.95 | LdrGetDllHandle |
| Status SUCCESS | |
1602142730.95 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142730.95 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142730.97 | RegOpenKeyExW |
| Status SUCCESS | |
1602142730.97 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142730.97 | RegQueryValueExW |
| Status SUCCESS | |
1602142730.97 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 848 | 1340 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142731.31 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142731.31 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142731.31 | LdrLoadDll |
| Status SUCCESS | |
1602142731.31 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142731.31 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142731.33 | NtCreateFile |
| Status SUCCESS | |
1602142731.33 | NtCreateSection |
| Status SUCCESS | |
1602142731.33 | NtMapViewOfSection |
| Status SUCCESS | |
1602142731.33 | 2 | NtClose |
| Status SUCCESS |
1602142731.33 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1792 | 1340 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142732.95 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142732.95 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142732.95 | LdrLoadDll |
| Status SUCCESS | |
1602142732.95 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142732.95 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142732.95 | NtCreateFile |
| Status SUCCESS | |
1602142732.95 | NtCreateSection |
| Status SUCCESS | |
1602142732.95 | NtMapViewOfSection |
| Status SUCCESS | |
1602142732.95 | 2 | NtClose |
| Status SUCCESS |
1602142732.95 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2620 | 2468 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142733.12 | NtOpenFile |
| Status SUCCESS | |
1602142733.12 | NtQueryInformationFile |
| Status SUCCESS | |
1602142733.12 | NtClose |
| Status SUCCESS | |
1602142733.12 | 69 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142733.14 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142733.14 | GetSystemInfo |
| Status SUCCESS | |
1602142733.14 | NtOpenKey |
| Status SUCCESS | |
1602142733.14 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142733.14 | NtQueryValueKey |
| Status SUCCESS | |
1602142733.14 | NtClose |
| Status SUCCESS |
reg.exe | 1736 | 1340 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142733.92 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142733.92 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142733.92 | LdrLoadDll |
| Status SUCCESS | |
1602142733.92 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142733.92 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142733.92 | NtCreateFile |
| Status SUCCESS | |
1602142733.92 | NtCreateSection |
| Status SUCCESS | |
1602142733.92 | NtMapViewOfSection |
| Status SUCCESS | |
1602142733.92 | 2 | NtClose |
| Status SUCCESS |
1602142733.92 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2972 | 1340 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142734.03 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142734.03 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142734.03 | NtOpenThread |
| Status SUCCESS | |
1602142734.03 | LdrGetDllHandle |
| Status SUCCESS | |
1602142734.03 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142734.03 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142734.03 | RegOpenKeyExW |
| Status SUCCESS | |
1602142734.03 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142734.03 | RegQueryValueExW |
| Status SUCCESS | |
1602142734.03 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2968 | 2620 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142734.23 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142734.23 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142734.23 | NtOpenThread |
| Status SUCCESS | |
1602142734.23 | LdrGetDllHandle |
| Status SUCCESS | |
1602142734.23 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142734.23 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142734.23 | RegOpenKeyExW |
| Status SUCCESS | |
1602142734.23 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142734.23 | RegQueryValueExW |
| Status SUCCESS | |
1602142734.23 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 664 | 2972 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142738.13 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142738.13 | NtClose |
| Status SUCCESS | |
1602142738.13 | NtOpenKey |
| Status SUCCESS | |
1602142738.13 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142738.13 | NtClose |
| Status SUCCESS | |
1602142738.13 | NtOpenKey |
| Status SUCCESS | |
1602142738.13 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142738.13 | NtClose |
| Status SUCCESS | |
1602142738.13 | LdrLoadDll |
| Status SUCCESS | |
1602142738.13 | LdrGetProcedureAddress |
| Status SUCCESS |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2012 | 2968 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142738.15 | NtOpenFile |
| Status SUCCESS | |
1602142738.15 | NtQueryInformationFile |
| Status SUCCESS | |
1602142738.15 | NtClose |
| Status SUCCESS | |
1602142738.15 | 35 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142738.16 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142738.16 | GetSystemInfo |
| Status SUCCESS | |
1602142738.16 | NtOpenKey |
| Status SUCCESS | |
1602142738.16 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142738.16 | NtQueryValueKey |
| Status SUCCESS | |
1602142738.16 | NtClose |
| Status SUCCESS |
reg.exe | 2568 | 2620 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142738.29 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142738.29 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142738.29 | LdrLoadDll |
| Status SUCCESS | |
1602142738.29 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142738.29 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142738.29 | NtCreateFile |
| Status SUCCESS | |
1602142738.29 | NtCreateSection |
| Status SUCCESS | |
1602142738.29 | NtMapViewOfSection |
| Status SUCCESS | |
1602142738.29 | 2 | NtClose |
| Status SUCCESS |
1602142738.29 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2840 | 2620 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142739.08 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142739.08 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142739.08 | LdrLoadDll |
| Status SUCCESS | |
1602142739.1 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142739.1 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142739.1 | NtCreateFile |
| Status SUCCESS | |
1602142739.1 | NtCreateSection |
| Status SUCCESS | |
1602142739.1 | NtMapViewOfSection |
| Status SUCCESS | |
1602142739.1 | 2 | NtClose |
| Status SUCCESS |
1602142739.1 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 1368 | 2012 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142740.35 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142740.35 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142740.35 | NtOpenThread |
| Status SUCCESS | |
1602142740.35 | LdrGetDllHandle |
| Status SUCCESS | |
1602142740.35 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142740.35 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142740.36 | RegOpenKeyExW |
| Status SUCCESS | |
1602142740.36 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142740.36 | RegQueryValueExW |
| Status SUCCESS | |
1602142740.36 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 1360 | 2620 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142740.49 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142740.49 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142740.49 | LdrLoadDll |
| Status SUCCESS | |
1602142740.49 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142740.49 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142740.49 | NtCreateFile |
| Status SUCCESS | |
1602142740.49 | NtCreateSection |
| Status SUCCESS | |
1602142740.49 | NtMapViewOfSection |
| Status SUCCESS | |
1602142740.49 | 2 | NtClose |
| Status SUCCESS |
1602142740.49 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 876 | 2620 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142740.55 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142740.55 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142740.55 | NtOpenThread |
| Status SUCCESS | |
1602142740.55 | LdrGetDllHandle |
| Status SUCCESS | |
1602142740.56 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142740.56 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142740.56 | RegOpenKeyExW |
| Status SUCCESS | |
1602142740.56 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142740.56 | RegQueryValueExW |
| Status SUCCESS | |
1602142740.56 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 1948 | 2012 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142740.64 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142740.64 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142740.66 | LdrLoadDll |
| Status SUCCESS | |
1602142740.66 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142740.66 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142740.66 | NtCreateFile |
| Status SUCCESS | |
1602142740.66 | NtCreateSection |
| Status SUCCESS | |
1602142740.66 | NtMapViewOfSection |
| Status SUCCESS | |
1602142740.66 | 2 | NtClose |
| Status SUCCESS |
1602142740.66 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1252 | 2012 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142740.83 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142740.83 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142740.83 | LdrLoadDll |
| Status SUCCESS | |
1602142740.83 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142740.83 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142740.83 | NtCreateFile |
| Status SUCCESS | |
1602142740.83 | NtCreateSection |
| Status SUCCESS | |
1602142740.83 | NtMapViewOfSection |
| Status SUCCESS | |
1602142740.83 | 2 | NtClose |
| Status SUCCESS |
1602142740.83 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 1232 | 1368 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142741.64 | NtOpenFile |
| Status SUCCESS | |
1602142741.66 | NtQueryInformationFile |
| Status SUCCESS | |
1602142741.66 | NtClose |
| Status SUCCESS | |
1602142741.66 | 67 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142741.66 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142741.66 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142741.66 | LdrLoadDll |
| Status SUCCESS | |
1602142741.66 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142741.67 | NtOpenKey |
| Status SUCCESS | |
1602142741.67 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 2172 | 2012 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142741.83 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142741.83 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142741.83 | LdrLoadDll |
| Status SUCCESS | |
1602142741.83 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142741.83 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142741.83 | NtCreateFile |
| Status SUCCESS | |
1602142741.83 | NtCreateSection |
| Status SUCCESS | |
1602142741.83 | NtMapViewOfSection |
| Status SUCCESS | |
1602142741.84 | 2 | NtClose |
| Status SUCCESS |
1602142741.84 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2136 | 876 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142741.94 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142741.95 | NtClose |
| Status SUCCESS | |
1602142741.98 | NtOpenKey |
| Status SUCCESS | |
1602142741.98 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142741.98 | NtClose |
| Status SUCCESS | |
1602142741.98 | NtOpenKey |
| Status SUCCESS | |
1602142741.98 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142741.98 | NtClose |
| Status SUCCESS | |
1602142741.98 | LdrLoadDll |
| Status SUCCESS | |
1602142741.98 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 2204 | 2012 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142743.67 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142743.67 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142743.67 | NtOpenThread |
| Status SUCCESS | |
1602142743.68 | LdrGetDllHandle |
| Status SUCCESS | |
1602142743.68 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142743.68 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142743.68 | RegOpenKeyExW |
| Status SUCCESS | |
1602142743.68 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142743.68 | RegQueryValueExW |
| Status SUCCESS | |
1602142743.68 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 1612 | 1232 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142744.7 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142744.7 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142744.7 | NtOpenThread |
| Status SUCCESS | |
1602142744.7 | LdrGetDllHandle |
| Status SUCCESS | |
1602142744.7 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142744.7 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142744.7 | RegOpenKeyExW |
| Status SUCCESS | |
1602142744.7 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142744.7 | RegQueryValueExW |
| Status SUCCESS | |
1602142744.7 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2772 | 2204 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142745.7 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142745.7 | NtClose |
| Status SUCCESS | |
1602142745.7 | NtOpenKey |
| Status SUCCESS | |
1602142745.7 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142745.7 | NtClose |
| Status SUCCESS | |
1602142745.7 | NtOpenKey |
| Status SUCCESS | |
1602142745.7 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142745.7 | NtClose |
| Status SUCCESS | |
1602142745.7 | LdrLoadDll |
| Status SUCCESS | |
1602142745.7 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 3040 | 1232 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142745.98 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142745.98 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142745.98 | LdrLoadDll |
| Status SUCCESS | |
1602142745.98 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142745.98 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142746.15 | NtCreateFile |
| Status SUCCESS | |
1602142746.15 | NtCreateSection |
| Status SUCCESS | |
1602142746.15 | NtMapViewOfSection |
| Status SUCCESS | |
1602142746.15 | 2 | NtClose |
| Status SUCCESS |
1602142746.15 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2076 | 1612 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142746.32 | NtOpenFile |
| Status SUCCESS | |
1602142746.32 | NtQueryInformationFile |
| Status SUCCESS | |
1602142746.32 | NtClose |
| Status SUCCESS | |
1602142746.32 | 16 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142746.32 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142746.32 | GetSystemInfo |
| Status SUCCESS | |
1602142746.32 | NtOpenKey |
| Status SUCCESS | |
1602142746.34 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142746.34 | NtQueryValueKey |
| Status SUCCESS | |
1602142746.34 | NtClose |
| Status SUCCESS |
reg.exe | 2988 | 1232 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142746.49 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142746.49 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142746.49 | LdrLoadDll |
| Status SUCCESS | |
1602142746.49 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142746.49 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142746.49 | NtCreateFile |
| Status SUCCESS | |
1602142746.49 | NtCreateSection |
| Status SUCCESS | |
1602142746.49 | NtMapViewOfSection |
| Status SUCCESS | |
1602142746.49 | 2 | NtClose |
| Status SUCCESS |
1602142746.49 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2064 | 1232 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142748.01 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142748.01 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142748.01 | LdrLoadDll |
| Status SUCCESS | |
1602142748.01 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142748.01 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142748.01 | NtCreateFile |
| Status SUCCESS | |
1602142748.01 | NtCreateSection |
| Status SUCCESS | |
1602142748.01 | NtMapViewOfSection |
| Status SUCCESS | |
1602142748.01 | 2 | NtClose |
| Status SUCCESS |
1602142748.01 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2164 | 1232 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142748.21 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142748.21 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142748.21 | NtOpenThread |
| Status SUCCESS | |
1602142748.21 | LdrGetDllHandle |
| Status SUCCESS | |
1602142748.22 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142748.22 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142748.22 | RegOpenKeyExW |
| Status SUCCESS | |
1602142748.22 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142748.22 | RegQueryValueExW |
| Status SUCCESS | |
1602142748.22 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2564 | 2076 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142748.38 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142748.38 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142748.38 | NtOpenThread |
| Status SUCCESS | |
1602142748.38 | LdrGetDllHandle |
| Status SUCCESS | |
1602142748.4 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142748.4 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142748.4 | RegOpenKeyExW |
| Status SUCCESS | |
1602142748.4 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142748.4 | RegQueryValueExW |
| Status SUCCESS | |
1602142748.4 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 1940 | 2076 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142749.64 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142749.64 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142749.64 | LdrLoadDll |
| Status SUCCESS | |
1602142749.64 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142749.64 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142749.64 | NtCreateFile |
| Status SUCCESS | |
1602142749.64 | NtCreateSection |
| Status SUCCESS | |
1602142749.64 | NtMapViewOfSection |
| Status SUCCESS | |
1602142749.64 | 2 | NtClose |
| Status SUCCESS |
1602142749.64 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3000 | 2564 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142750.5 | NtOpenFile |
| Status SUCCESS | |
1602142750.5 | NtQueryInformationFile |
| Status SUCCESS | |
1602142750.5 | NtClose |
| Status SUCCESS | |
1602142750.5 | 23 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142750.5 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142750.5 | GetSystemInfo |
| Status SUCCESS | |
1602142750.5 | NtOpenKey |
| Status SUCCESS | |
1602142750.5 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142750.5 | NtQueryValueKey |
| Status SUCCESS | |
1602142750.5 | NtClose |
| Status SUCCESS |
cscript.exe | 2324 | 2164 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142751.03 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142751.03 | NtClose |
| Status SUCCESS | |
1602142751.03 | NtOpenKey |
| Status SUCCESS | |
1602142751.03 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142751.03 | NtClose |
| Status SUCCESS | |
1602142751.03 | NtOpenKey |
| Status SUCCESS | |
1602142751.03 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142751.05 | NtClose |
| Status SUCCESS | |
1602142751.05 | LdrLoadDll |
| Status SUCCESS | |
1602142751.05 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 680 | 2076 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142751.11 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142751.11 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142751.11 | LdrLoadDll |
| Status SUCCESS | |
1602142751.11 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142751.11 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142751.11 | NtCreateFile |
| Status SUCCESS | |
1602142751.11 | NtCreateSection |
| Status SUCCESS | |
1602142751.11 | NtMapViewOfSection |
| Status SUCCESS | |
1602142751.11 | 2 | NtClose |
| Status SUCCESS |
1602142751.11 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1648 | 2076 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142754.01 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142754.01 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142754.01 | LdrLoadDll |
| Status SUCCESS | |
1602142754.01 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142754.01 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142754.57 | NtCreateFile |
| Status SUCCESS | |
1602142754.59 | NtCreateSection |
| Status SUCCESS | |
1602142754.59 | NtMapViewOfSection |
| Status SUCCESS | |
1602142754.59 | 2 | NtClose |
| Status SUCCESS |
1602142754.59 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2848 | 3000 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142754.54 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142754.54 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142754.54 | NtOpenThread |
| Status SUCCESS | |
1602142754.54 | LdrGetDllHandle |
| Status SUCCESS | |
1602142754.54 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142754.54 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142754.54 | RegOpenKeyExW |
| Status SUCCESS | |
1602142754.54 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142754.54 | RegQueryValueExW |
| Status SUCCESS | |
1602142754.54 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2472 | 2076 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142755.74 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142755.74 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142755.74 | NtOpenThread |
| Status SUCCESS | |
1602142755.74 | LdrGetDllHandle |
| Status SUCCESS | |
1602142755.74 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142755.74 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142755.74 | RegOpenKeyExW |
| Status SUCCESS | |
1602142755.74 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142755.74 | RegQueryValueExW |
| Status SUCCESS | |
1602142755.74 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 760 | 3000 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142756.13 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142756.13 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142756.13 | LdrLoadDll |
| Status SUCCESS | |
1602142756.13 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142756.13 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142756.13 | NtCreateFile |
| Status SUCCESS | |
1602142756.13 | NtCreateSection |
| Status SUCCESS | |
1602142756.13 | NtMapViewOfSection |
| Status SUCCESS | |
1602142756.13 | 2 | NtClose |
| Status SUCCESS |
1602142756.13 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2868 | 2848 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142756.98 | NtOpenFile |
| Status SUCCESS | |
1602142756.98 | NtQueryInformationFile |
| Status SUCCESS | |
1602142756.98 | NtClose |
| Status SUCCESS | |
1602142756.98 | 49 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142756.99 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142757.01 | GetSystemInfo |
| Status SUCCESS | |
1602142757.01 | NtOpenKey |
| Status SUCCESS | |
1602142757.01 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142757.01 | NtQueryValueKey |
| Status SUCCESS | |
1602142757.01 | NtClose |
| Status SUCCESS |
reg.exe | 912 | 3000 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142758.21 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142758.21 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142758.21 | LdrLoadDll |
| Status SUCCESS | |
1602142758.21 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142758.21 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142758.21 | NtCreateFile |
| Status SUCCESS | |
1602142758.21 | NtCreateSection |
| Status SUCCESS | |
1602142758.21 | NtMapViewOfSection |
| Status SUCCESS | |
1602142758.21 | 2 | NtClose |
| Status SUCCESS |
1602142758.21 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2804 | 2472 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142758.6 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142758.6 | NtClose |
| Status SUCCESS | |
1602142758.6 | NtOpenKey |
| Status SUCCESS | |
1602142758.6 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142758.6 | NtClose |
| Status SUCCESS | |
1602142758.6 | NtOpenKey |
| Status SUCCESS | |
1602142758.6 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142758.6 | NtClose |
| Status SUCCESS | |
1602142758.6 | LdrLoadDll |
| Status SUCCESS | |
1602142758.6 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 852 | 3000 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142758.6 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142758.6 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142758.6 | LdrLoadDll |
| Status SUCCESS | |
1602142758.6 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142758.6 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142758.6 | NtCreateFile |
| Status SUCCESS | |
1602142758.6 | NtCreateSection |
| Status SUCCESS | |
1602142758.6 | NtMapViewOfSection |
| Status SUCCESS | |
1602142758.6 | 2 | NtClose |
| Status SUCCESS |
1602142758.6 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3176 | 2868 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142760.47 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142760.47 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142760.47 | NtOpenThread |
| Status SUCCESS | |
1602142760.47 | LdrGetDllHandle |
| Status SUCCESS | |
1602142760.47 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142760.47 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142760.47 | RegOpenKeyExW |
| Status SUCCESS | |
1602142760.47 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142760.47 | RegQueryValueExW |
| Status SUCCESS | |
1602142760.47 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3144 | 3000 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142761.11 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142761.11 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142761.11 | NtOpenThread |
| Status SUCCESS | |
1602142761.11 | LdrGetDllHandle |
| Status SUCCESS | |
1602142761.11 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142761.11 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142761.11 | RegOpenKeyExW |
| Status SUCCESS | |
1602142761.11 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142761.11 | RegQueryValueExW |
| Status SUCCESS | |
1602142761.11 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3248 | 2868 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142761.48 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142761.48 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142761.51 | LdrLoadDll |
| Status SUCCESS | |
1602142761.51 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142761.51 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142761.51 | NtCreateFile |
| Status SUCCESS | |
1602142761.51 | NtCreateSection |
| Status SUCCESS | |
1602142761.51 | NtMapViewOfSection |
| Status SUCCESS | |
1602142761.51 | 2 | NtClose |
| Status SUCCESS |
1602142761.51 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3372 | 2868 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142762.83 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142762.83 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142762.83 | LdrLoadDll |
| Status SUCCESS | |
1602142762.83 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142762.83 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142762.83 | NtCreateFile |
| Status SUCCESS | |
1602142762.83 | NtCreateSection |
| Status SUCCESS | |
1602142762.83 | NtMapViewOfSection |
| Status SUCCESS | |
1602142762.83 | 2 | NtClose |
| Status SUCCESS |
1602142762.83 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3476 | 3176 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142769.16 | NtOpenFile |
| Status SUCCESS | |
1602142769.16 | NtQueryInformationFile |
| Status SUCCESS | |
1602142769.16 | NtClose |
| Status SUCCESS | |
1602142769.16 | 58 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142769.17 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142769.17 | GetSystemInfo |
| Status SUCCESS | |
1602142769.17 | NtOpenKey |
| Status SUCCESS | |
1602142769.17 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142769.17 | NtQueryValueKey |
| Status SUCCESS | |
1602142769.17 | NtClose |
| Status SUCCESS |
cscript.exe | 3516 | 3144 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142763.42 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142763.42 | NtClose |
| Status SUCCESS | |
1602142763.42 | NtOpenKey |
| Status SUCCESS | |
1602142763.42 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142763.42 | NtClose |
| Status SUCCESS | |
1602142763.42 | NtOpenKey |
| Status SUCCESS | |
1602142763.42 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142763.42 | NtClose |
| Status SUCCESS | |
1602142763.42 | LdrLoadDll |
| Status SUCCESS | |
1602142763.42 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 3548 | 2868 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142763.12 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142763.12 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142763.12 | LdrLoadDll |
| Status SUCCESS | |
1602142763.12 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142763.12 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142763.14 | NtCreateFile |
| Status SUCCESS | |
1602142763.14 | NtCreateSection |
| Status SUCCESS | |
1602142763.14 | NtMapViewOfSection |
| Status SUCCESS | |
1602142763.14 | 2 | NtClose |
| Status SUCCESS |
1602142763.14 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3700 | 2868 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142764.67 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142764.67 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142764.67 | NtOpenThread |
| Status SUCCESS | |
1602142764.67 | LdrGetDllHandle |
| Status SUCCESS | |
1602142764.67 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142764.67 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142764.67 | RegOpenKeyExW |
| Status SUCCESS | |
1602142764.67 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142764.67 | RegQueryValueExW |
| Status SUCCESS | |
1602142764.67 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 3780 | 3700 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142765.93 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142765.93 | NtClose |
| Status SUCCESS | |
1602142765.93 | NtOpenKey |
| Status SUCCESS | |
1602142765.93 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142765.93 | NtClose |
| Status SUCCESS | |
1602142765.93 | NtOpenKey |
| Status SUCCESS | |
1602142765.93 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142765.95 | NtClose |
| Status SUCCESS | |
1602142765.95 | LdrLoadDll |
| Status SUCCESS | |
1602142765.95 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 3896 | 3476 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142769.64 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142769.64 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142769.64 | NtOpenThread |
| Status SUCCESS | |
1602142769.64 | LdrGetDllHandle |
| Status SUCCESS | |
1602142769.64 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142769.64 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142769.64 | RegOpenKeyExW |
| Status SUCCESS | |
1602142769.64 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142769.64 | RegQueryValueExW |
| Status SUCCESS | |
1602142769.64 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3948 | 3476 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142770.49 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142770.49 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142770.49 | LdrLoadDll |
| Status SUCCESS | |
1602142770.49 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142770.49 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142770.5 | NtCreateFile |
| Status SUCCESS | |
1602142770.5 | NtCreateSection |
| Status SUCCESS | |
1602142770.5 | NtMapViewOfSection |
| Status SUCCESS | |
1602142770.5 | 2 | NtClose |
| Status SUCCESS |
1602142770.5 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3988 | 3896 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142771.25 | NtOpenFile |
| Status SUCCESS | |
1602142771.25 | NtQueryInformationFile |
| Status SUCCESS | |
1602142771.25 | NtClose |
| Status SUCCESS | |
1602142771.25 | 34 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142771.25 | NtOpenKey |
| Status SUCCESS | |
1602142771.25 | NtOpenKeyEx |
| Status SUCCESS | |
1602142771.25 | LdrLoadDll |
| Status SUCCESS | |
1602142771.25 | 3 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142771.27 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142771.27 | GetSystemInfo |
| Status SUCCESS |
reg.exe | 4008 | 3476 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142771.34 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142771.34 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142771.34 | LdrLoadDll |
| Status SUCCESS | |
1602142771.34 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142771.34 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142771.34 | NtCreateFile |
| Status SUCCESS | |
1602142771.34 | NtCreateSection |
| Status SUCCESS | |
1602142771.34 | NtMapViewOfSection |
| Status SUCCESS | |
1602142771.34 | 2 | NtClose |
| Status SUCCESS |
1602142771.34 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4092 | 3476 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142772.12 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142772.12 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142772.12 | LdrLoadDll |
| Status SUCCESS | |
1602142772.12 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142772.12 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142772.12 | NtCreateFile |
| Status SUCCESS | |
1602142772.12 | NtCreateSection |
| Status SUCCESS | |
1602142772.12 | NtMapViewOfSection |
| Status SUCCESS | |
1602142772.14 | 2 | NtClose |
| Status SUCCESS |
1602142772.14 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2092 | 3476 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142772.9 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142772.9 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142772.9 | NtOpenThread |
| Status SUCCESS | |
1602142772.9 | LdrGetDllHandle |
| Status SUCCESS | |
1602142772.9 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142772.9 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142772.9 | RegOpenKeyExW |
| Status SUCCESS | |
1602142772.9 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142772.9 | RegQueryValueExW |
| Status SUCCESS | |
1602142772.9 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3100 | 3988 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142773.04 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142773.04 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142773.04 | NtOpenThread |
| Status SUCCESS | |
1602142773.04 | LdrGetDllHandle |
| Status SUCCESS | |
1602142773.04 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142773.04 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142773.04 | RegOpenKeyExW |
| Status SUCCESS | |
1602142773.04 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142773.04 | RegQueryValueExW |
| Status SUCCESS | |
1602142773.04 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3260 | 3988 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142773.89 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142773.89 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142773.89 | LdrLoadDll |
| Status SUCCESS | |
1602142773.89 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142773.89 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142773.89 | NtCreateFile |
| Status SUCCESS | |
1602142773.89 | NtCreateSection |
| Status SUCCESS | |
1602142773.89 | NtMapViewOfSection |
| Status SUCCESS | |
1602142773.89 | 2 | NtClose |
| Status SUCCESS |
1602142773.89 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 1740 | 3100 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142774.14 | NtOpenFile |
| Status SUCCESS | |
1602142774.15 | NtQueryInformationFile |
| Status SUCCESS | |
1602142774.15 | NtClose |
| Status SUCCESS | |
1602142774.15 | 20 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142774.15 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142774.15 | GetSystemInfo |
| Status SUCCESS | |
1602142774.15 | NtOpenKey |
| Status SUCCESS | |
1602142774.15 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142774.15 | NtQueryValueKey |
| Status SUCCESS | |
1602142774.15 | NtClose |
| Status SUCCESS |
cscript.exe | 2652 | 2092 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142774.14 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142774.14 | NtClose |
| Status SUCCESS | |
1602142774.14 | NtOpenKey |
| Status SUCCESS | |
1602142774.14 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142774.14 | NtClose |
| Status SUCCESS | |
1602142774.14 | NtOpenKey |
| Status SUCCESS | |
1602142774.14 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142774.14 | NtClose |
| Status SUCCESS | |
1602142774.14 | LdrLoadDll |
| Status SUCCESS | |
1602142774.14 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 3312 | 3988 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142775.32 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142775.32 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142775.32 | LdrLoadDll |
| Status SUCCESS | |
1602142775.32 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142775.32 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142775.32 | NtCreateFile |
| Status SUCCESS | |
1602142775.32 | NtCreateSection |
| Status SUCCESS | |
1602142775.32 | NtMapViewOfSection |
| Status SUCCESS | |
1602142775.32 | 2 | NtClose |
| Status SUCCESS |
1602142775.32 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2244 | 1740 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142776.65 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142776.65 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142776.65 | NtOpenThread |
| Status SUCCESS | |
1602142776.65 | LdrGetDllHandle |
| Status SUCCESS | |
1602142776.65 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142776.65 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142776.65 | RegOpenKeyExW |
| Status SUCCESS | |
1602142776.65 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142776.65 | RegQueryValueExW |
| Status SUCCESS | |
1602142776.66 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3488 | 3988 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142776.82 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142776.82 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142776.82 | LdrLoadDll |
| Status SUCCESS | |
1602142776.82 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142776.82 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142776.82 | NtCreateFile |
| Status SUCCESS | |
1602142776.83 | NtCreateSection |
| Status SUCCESS | |
1602142776.83 | NtMapViewOfSection |
| Status SUCCESS | |
1602142776.83 | 2 | NtClose |
| Status SUCCESS |
1602142776.83 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3580 | 1740 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142776.88 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142776.88 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142776.88 | LdrLoadDll |
| Status SUCCESS | |
1602142776.88 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142776.88 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142776.88 | NtCreateFile |
| Status SUCCESS | |
1602142776.88 | NtCreateSection |
| Status SUCCESS | |
1602142776.88 | NtMapViewOfSection |
| Status SUCCESS | |
1602142776.88 | 2 | NtClose |
| Status SUCCESS |
1602142776.88 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 1684 | 3988 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142776.93 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142776.93 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142776.93 | NtOpenThread |
| Status SUCCESS | |
1602142776.93 | LdrGetDllHandle |
| Status SUCCESS | |
1602142776.93 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142776.93 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142776.93 | RegOpenKeyExW |
| Status SUCCESS | |
1602142776.93 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142776.93 | RegQueryValueExW |
| Status SUCCESS | |
1602142776.93 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3552 | 2244 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142777.08 | NtOpenFile |
| Status SUCCESS | |
1602142777.08 | NtQueryInformationFile |
| Status SUCCESS | |
1602142777.08 | NtClose |
| Status SUCCESS | |
1602142777.08 | 32 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142777.1 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142777.1 | GetSystemInfo |
| Status SUCCESS | |
1602142777.1 | NtOpenKey |
| Status SUCCESS | |
1602142777.1 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142777.1 | NtQueryValueKey |
| Status SUCCESS | |
1602142777.1 | NtClose |
| Status SUCCESS |
reg.exe | 3664 | 1740 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142777.24 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142777.24 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142777.24 | LdrLoadDll |
| Status SUCCESS | |
1602142777.24 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142777.24 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142777.24 | NtCreateFile |
| Status SUCCESS | |
1602142777.24 | NtCreateSection |
| Status SUCCESS | |
1602142777.24 | NtMapViewOfSection |
| Status SUCCESS | |
1602142777.24 | 2 | NtClose |
| Status SUCCESS |
1602142777.24 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 604 | 1740 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142777.46 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142777.46 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142777.46 | LdrLoadDll |
| Status SUCCESS | |
1602142777.46 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142777.46 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142777.46 | NtCreateFile |
| Status SUCCESS | |
1602142777.46 | NtCreateSection |
| Status SUCCESS | |
1602142777.46 | NtMapViewOfSection |
| Status SUCCESS | |
1602142777.46 | 2 | NtClose |
| Status SUCCESS |
1602142777.46 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 3148 | 1684 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142777.55 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142777.55 | NtClose |
| Status SUCCESS | |
1602142777.55 | NtOpenKey |
| Status SUCCESS | |
1602142777.55 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142777.55 | NtClose |
| Status SUCCESS | |
1602142777.55 | NtOpenKey |
| Status SUCCESS | |
1602142777.55 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142777.55 | NtClose |
| Status SUCCESS | |
1602142777.55 | LdrLoadDll |
| Status SUCCESS | |
1602142777.55 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 3332 | 1740 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142777.61 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142777.61 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142777.61 | NtOpenThread |
| Status SUCCESS | |
1602142777.63 | LdrGetDllHandle |
| Status SUCCESS | |
1602142777.63 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142777.63 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142777.63 | RegOpenKeyExW |
| Status SUCCESS | |
1602142777.63 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142777.63 | RegQueryValueExW |
| Status SUCCESS | |
1602142777.63 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3856 | 3552 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142778.44 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142778.44 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142778.44 | NtOpenThread |
| Status SUCCESS | |
1602142778.44 | LdrGetDllHandle |
| Status SUCCESS | |
1602142778.44 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142778.44 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142778.44 | RegOpenKeyExW |
| Status SUCCESS | |
1602142778.44 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142778.44 | RegQueryValueExW |
| Status SUCCESS | |
1602142778.44 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4024 | 3332 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142779.97 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142779.97 | NtClose |
| Status SUCCESS | |
1602142779.97 | NtOpenKey |
| Status SUCCESS | |
1602142779.97 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142779.97 | NtClose |
| Status SUCCESS | |
1602142779.97 | NtOpenKey |
| Status SUCCESS | |
1602142779.97 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142779.97 | NtClose |
| Status SUCCESS | |
1602142779.97 | LdrLoadDll |
| Status SUCCESS | |
1602142779.97 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 3980 | 3552 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142780.0 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142780.0 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142780.0 | LdrLoadDll |
| Status SUCCESS | |
1602142780.0 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142780.0 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142780.0 | NtCreateFile |
| Status SUCCESS | |
1602142780.0 | NtCreateSection |
| Status SUCCESS | |
1602142780.0 | NtMapViewOfSection |
| Status SUCCESS | |
1602142780.0 | 2 | NtClose |
| Status SUCCESS |
1602142780.0 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3952 | 3856 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142780.16 | NtOpenFile |
| Status SUCCESS | |
1602142780.16 | NtQueryInformationFile |
| Status SUCCESS | |
1602142780.16 | NtClose |
| Status SUCCESS | |
1602142780.16 | 22 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142780.17 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142780.17 | GetSystemInfo |
| Status SUCCESS | |
1602142780.17 | NtOpenKey |
| Status SUCCESS | |
1602142780.17 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142780.17 | NtQueryValueKey |
| Status SUCCESS | |
1602142780.17 | NtClose |
| Status SUCCESS |
reg.exe | 3084 | 3552 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142780.23 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142780.23 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142780.23 | LdrLoadDll |
| Status SUCCESS | |
1602142780.23 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142780.23 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142780.23 | NtCreateFile |
| Status SUCCESS | |
1602142780.23 | NtCreateSection |
| Status SUCCESS | |
1602142780.23 | NtMapViewOfSection |
| Status SUCCESS | |
1602142780.23 | 2 | NtClose |
| Status SUCCESS |
1602142780.23 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3168 | 3552 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142780.34 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142780.34 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142780.34 | LdrLoadDll |
| Status SUCCESS | |
1602142780.34 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142780.34 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142780.34 | NtCreateFile |
| Status SUCCESS | |
1602142780.34 | NtCreateSection |
| Status SUCCESS | |
1602142780.34 | NtMapViewOfSection |
| Status SUCCESS | |
1602142780.34 | 2 | NtClose |
| Status SUCCESS |
1602142780.34 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3280 | 3552 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142782.4 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142782.4 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142782.4 | NtOpenThread |
| Status SUCCESS | |
1602142782.4 | LdrGetDllHandle |
| Status SUCCESS | |
1602142782.4 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142782.4 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142782.4 | RegOpenKeyExW |
| Status SUCCESS | |
1602142782.4 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142782.4 | RegQueryValueExW |
| Status SUCCESS | |
1602142782.4 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 796 | 3280 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142782.92 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142782.92 | NtClose |
| Status SUCCESS | |
1602142782.92 | NtOpenKey |
| Status SUCCESS | |
1602142782.92 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142782.93 | NtClose |
| Status SUCCESS | |
1602142782.93 | NtOpenKey |
| Status SUCCESS | |
1602142782.93 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142782.93 | NtClose |
| Status SUCCESS | |
1602142782.93 | LdrLoadDll |
| Status SUCCESS | |
1602142782.93 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 2584 | 3952 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142784.93 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142784.93 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142784.93 | NtOpenThread |
| Status SUCCESS | |
1602142784.93 | LdrGetDllHandle |
| Status SUCCESS | |
1602142784.93 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142784.93 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142784.93 | RegOpenKeyExW |
| Status SUCCESS | |
1602142784.93 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142784.93 | RegQueryValueExW |
| Status SUCCESS | |
1602142784.93 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3408 | 3952 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142786.8 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142786.8 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142786.8 | LdrLoadDll |
| Status SUCCESS | |
1602142786.82 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142786.82 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142786.82 | NtCreateFile |
| Status SUCCESS | |
1602142786.82 | NtCreateSection |
| Status SUCCESS | |
1602142786.82 | NtMapViewOfSection |
| Status SUCCESS | |
1602142786.82 | 2 | NtClose |
| Status SUCCESS |
1602142786.82 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2212 | 2584 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142787.13 | NtOpenFile |
| Status SUCCESS | |
1602142787.13 | NtQueryInformationFile |
| Status SUCCESS | |
1602142787.13 | NtClose |
| Status SUCCESS | |
1602142787.13 | 28 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142787.15 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142787.15 | GetSystemInfo |
| Status SUCCESS | |
1602142787.15 | NtOpenKey |
| Status SUCCESS | |
1602142787.15 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142787.15 | NtQueryValueKey |
| Status SUCCESS | |
1602142787.15 | NtClose |
| Status SUCCESS |
reg.exe | 1680 | 3952 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142787.15 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142787.15 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142787.15 | LdrLoadDll |
| Status SUCCESS | |
1602142787.15 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142787.15 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142787.15 | NtCreateFile |
| Status SUCCESS | |
1602142787.16 | NtCreateSection |
| Status SUCCESS | |
1602142787.16 | NtMapViewOfSection |
| Status SUCCESS | |
1602142787.16 | 2 | NtClose |
| Status SUCCESS |
1602142787.16 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3940 | 3952 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142788.78 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142788.78 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142788.78 | LdrLoadDll |
| Status SUCCESS | |
1602142788.78 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142788.78 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142788.8 | NtCreateFile |
| Status SUCCESS | |
1602142788.8 | NtCreateSection |
| Status SUCCESS | |
1602142788.8 | NtMapViewOfSection |
| Status SUCCESS | |
1602142788.8 | 2 | NtClose |
| Status SUCCESS |
1602142788.8 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3736 | 3952 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142790.36 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142790.36 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142790.36 | NtOpenThread |
| Status SUCCESS | |
1602142790.36 | LdrGetDllHandle |
| Status SUCCESS | |
1602142790.36 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142790.36 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142790.36 | RegOpenKeyExW |
| Status SUCCESS | |
1602142790.36 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142790.36 | RegQueryValueExW |
| Status SUCCESS | |
1602142790.36 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3776 | 2212 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142790.5 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142790.5 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142790.5 | NtOpenThread |
| Status SUCCESS | |
1602142790.5 | LdrGetDllHandle |
| Status SUCCESS | |
1602142790.5 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142790.5 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142790.5 | RegOpenKeyExW |
| Status SUCCESS | |
1602142790.5 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142790.5 | RegQueryValueExW |
| Status SUCCESS | |
1602142790.5 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 3928 | 3736 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142790.7 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142790.7 | NtClose |
| Status SUCCESS | |
1602142790.7 | NtOpenKey |
| Status SUCCESS | |
1602142790.7 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142790.7 | NtClose |
| Status SUCCESS | |
1602142790.7 | NtOpenKey |
| Status SUCCESS | |
1602142790.7 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142790.7 | NtClose |
| Status SUCCESS | |
1602142790.7 | LdrLoadDll |
| Status SUCCESS | |
1602142790.7 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 3880 | 2212 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142790.75 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142790.75 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142790.75 | LdrLoadDll |
| Status SUCCESS | |
1602142790.75 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142790.75 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142790.75 | NtCreateFile |
| Status SUCCESS | |
1602142790.76 | NtCreateSection |
| Status SUCCESS | |
1602142790.76 | NtMapViewOfSection |
| Status SUCCESS | |
1602142790.76 | 2 | NtClose |
| Status SUCCESS |
1602142790.76 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4088 | 3776 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142790.83 | NtOpenFile |
| Status SUCCESS | |
1602142790.83 | NtQueryInformationFile |
| Status SUCCESS | |
1602142790.83 | NtClose |
| Status SUCCESS | |
1602142790.83 | 8 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142790.83 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142790.83 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142790.83 | LdrLoadDll |
| Status SUCCESS | |
1602142790.83 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142790.83 | NtOpenKey |
| Status SUCCESS | |
1602142790.83 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 4028 | 2212 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142790.84 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142790.84 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142790.84 | LdrLoadDll |
| Status SUCCESS | |
1602142790.84 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142790.84 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142790.84 | NtCreateFile |
| Status SUCCESS | |
1602142790.84 | NtCreateSection |
| Status SUCCESS | |
1602142790.84 | NtMapViewOfSection |
| Status SUCCESS | |
1602142790.84 | 2 | NtClose |
| Status SUCCESS |
1602142790.84 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3112 | 2212 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142791.19 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142791.19 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142791.19 | LdrLoadDll |
| Status SUCCESS | |
1602142791.19 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142791.19 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142791.2 | NtCreateFile |
| Status SUCCESS | |
1602142791.2 | NtCreateSection |
| Status SUCCESS | |
1602142791.2 | NtMapViewOfSection |
| Status SUCCESS | |
1602142791.2 | 2 | NtClose |
| Status SUCCESS |
1602142791.2 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3164 | 2212 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142791.4 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142791.4 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142791.4 | NtOpenThread |
| Status SUCCESS | |
1602142791.4 | LdrGetDllHandle |
| Status SUCCESS | |
1602142791.4 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142791.4 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142791.4 | RegOpenKeyExW |
| Status SUCCESS | |
1602142791.4 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142791.4 | RegQueryValueExW |
| Status SUCCESS | |
1602142791.4 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3120 | 4088 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142791.51 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142791.51 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142791.51 | NtOpenThread |
| Status SUCCESS | |
1602142791.51 | LdrGetDllHandle |
| Status SUCCESS | |
1602142791.51 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142791.51 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142791.51 | RegOpenKeyExW |
| Status SUCCESS | |
1602142791.51 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142791.51 | RegQueryValueExW |
| Status SUCCESS | |
1602142791.51 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3180 | 4088 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142791.76 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142791.76 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142791.76 | LdrLoadDll |
| Status SUCCESS | |
1602142791.76 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142791.76 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142791.76 | NtCreateFile |
| Status SUCCESS | |
1602142791.76 | NtCreateSection |
| Status SUCCESS | |
1602142791.76 | NtMapViewOfSection |
| Status SUCCESS | |
1602142791.78 | 2 | NtClose |
| Status SUCCESS |
1602142791.78 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3228 | 3120 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142792.09 | NtOpenFile |
| Status SUCCESS | |
1602142792.09 | NtQueryInformationFile |
| Status SUCCESS | |
1602142792.09 | NtClose |
| Status SUCCESS | |
1602142792.09 | 27 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142792.09 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142792.09 | GetSystemInfo |
| Status SUCCESS | |
1602142792.09 | NtOpenKey |
| Status SUCCESS | |
1602142792.09 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142792.09 | NtQueryValueKey |
| Status SUCCESS | |
1602142792.11 | NtClose |
| Status SUCCESS |
cscript.exe | 3472 | 3164 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142792.11 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142792.11 | NtClose |
| Status SUCCESS | |
1602142792.11 | NtOpenKey |
| Status SUCCESS | |
1602142792.11 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142792.11 | NtClose |
| Status SUCCESS | |
1602142792.11 | NtOpenKey |
| Status SUCCESS | |
1602142792.11 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142792.11 | NtClose |
| Status SUCCESS | |
1602142792.11 | LdrLoadDll |
| Status SUCCESS | |
1602142792.11 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 544 | 4088 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142791.97 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142791.97 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142791.97 | LdrLoadDll |
| Status SUCCESS | |
1602142791.97 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142791.97 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142791.97 | NtCreateFile |
| Status SUCCESS | |
1602142791.97 | NtCreateSection |
| Status SUCCESS | |
1602142791.97 | NtMapViewOfSection |
| Status SUCCESS | |
1602142791.98 | 2 | NtClose |
| Status SUCCESS |
1602142791.98 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1688 | 4088 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142793.61 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142793.61 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142793.61 | LdrLoadDll |
| Status SUCCESS | |
1602142793.61 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142793.61 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142793.61 | NtCreateFile |
| Status SUCCESS | |
1602142793.61 | NtCreateSection |
| Status SUCCESS | |
1602142793.61 | NtMapViewOfSection |
| Status SUCCESS | |
1602142793.61 | 2 | NtClose |
| Status SUCCESS |
1602142793.61 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3612 | 4088 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142794.56 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142794.56 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142794.56 | NtOpenThread |
| Status SUCCESS | |
1602142794.56 | LdrGetDllHandle |
| Status SUCCESS | |
1602142794.56 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142794.56 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142794.56 | RegOpenKeyExW |
| Status SUCCESS | |
1602142794.56 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142794.56 | RegQueryValueExW |
| Status SUCCESS | |
1602142794.56 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3428 | 3228 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142796.6 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142796.6 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142796.6 | NtOpenThread |
| Status SUCCESS | |
1602142796.6 | LdrGetDllHandle |
| Status SUCCESS | |
1602142796.6 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142796.6 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142796.6 | RegOpenKeyExW |
| Status SUCCESS | |
1602142796.6 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142796.6 | RegQueryValueExW |
| Status SUCCESS | |
1602142796.6 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 3956 | 3612 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142797.24 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142797.24 | NtClose |
| Status SUCCESS | |
1602142797.24 | NtOpenKey |
| Status SUCCESS | |
1602142797.24 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142797.24 | NtClose |
| Status SUCCESS | |
1602142797.24 | NtOpenKey |
| Status SUCCESS | |
1602142797.24 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142797.24 | NtClose |
| Status SUCCESS | |
1602142797.24 | LdrLoadDll |
| Status SUCCESS | |
1602142797.24 | LdrGetProcedureAddress |
| Status SUCCESS |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4020 | 3428 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142799.78 | NtOpenFile |
| Status SUCCESS | |
1602142799.78 | NtQueryInformationFile |
| Status SUCCESS | |
1602142799.78 | NtClose |
| Status SUCCESS | |
1602142799.78 | 12 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142799.8 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142799.8 | GetSystemInfo |
| Status SUCCESS | |
1602142799.8 | NtOpenKey |
| Status SUCCESS | |
1602142799.8 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142799.8 | NtQueryValueKey |
| Status SUCCESS | |
1602142799.8 | NtClose |
| Status SUCCESS |
reg.exe | 4060 | 3228 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142798.5 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142798.5 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142798.5 | LdrLoadDll |
| Status SUCCESS | |
1602142798.5 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142798.5 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142798.5 | NtCreateFile |
| Status SUCCESS | |
1602142798.5 | NtCreateSection |
| Status SUCCESS | |
1602142798.5 | NtMapViewOfSection |
| Status SUCCESS | |
1602142798.5 | 2 | NtClose |
| Status SUCCESS |
1602142798.52 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3932 | 3228 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142798.56 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142798.56 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142798.56 | LdrLoadDll |
| Status SUCCESS | |
1602142798.56 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142798.56 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142798.56 | NtCreateFile |
| Status SUCCESS | |
1602142798.56 | NtCreateSection |
| Status SUCCESS | |
1602142798.56 | NtMapViewOfSection |
| Status SUCCESS | |
1602142798.56 | 2 | NtClose |
| Status SUCCESS |
1602142798.56 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3268 | 3228 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142798.55 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142798.55 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142798.55 | LdrLoadDll |
| Status SUCCESS | |
1602142798.55 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142798.55 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142798.55 | NtCreateFile |
| Status SUCCESS | |
1602142798.55 | NtCreateSection |
| Status SUCCESS | |
1602142798.55 | NtMapViewOfSection |
| Status SUCCESS | |
1602142798.55 | 2 | NtClose |
| Status SUCCESS |
1602142798.55 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3796 | 3228 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142798.67 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142798.69 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142798.69 | NtOpenThread |
| Status SUCCESS | |
1602142798.69 | LdrGetDllHandle |
| Status SUCCESS | |
1602142798.69 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142798.69 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142798.69 | RegOpenKeyExW |
| Status SUCCESS | |
1602142798.69 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142798.69 | RegQueryValueExW |
| Status SUCCESS | |
1602142798.69 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 748 | 3796 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142799.85 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142799.85 | NtClose |
| Status SUCCESS | |
1602142799.85 | NtOpenKey |
| Status SUCCESS | |
1602142799.85 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142799.85 | NtClose |
| Status SUCCESS | |
1602142799.85 | NtOpenKey |
| Status SUCCESS | |
1602142799.85 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142799.85 | NtClose |
| Status SUCCESS | |
1602142799.85 | LdrLoadDll |
| Status SUCCESS | |
1602142799.85 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 1348 | 4020 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142800.23 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142800.23 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142800.23 | NtOpenThread |
| Status SUCCESS | |
1602142800.23 | LdrGetDllHandle |
| Status SUCCESS | |
1602142800.23 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142800.23 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142800.23 | RegOpenKeyExW |
| Status SUCCESS | |
1602142800.23 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142800.23 | RegQueryValueExW |
| Status SUCCESS | |
1602142800.23 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3536 | 4020 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142800.36 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142800.36 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142800.36 | LdrLoadDll |
| Status SUCCESS | |
1602142800.36 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142800.36 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142800.36 | NtCreateFile |
| Status SUCCESS | |
1602142800.36 | NtCreateSection |
| Status SUCCESS | |
1602142800.36 | NtMapViewOfSection |
| Status SUCCESS | |
1602142800.36 | 2 | NtClose |
| Status SUCCESS |
1602142800.36 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2148 | 4020 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142800.37 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142800.37 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142800.37 | LdrLoadDll |
| Status SUCCESS | |
1602142800.37 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142800.37 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142800.37 | NtCreateFile |
| Status SUCCESS | |
1602142800.37 | NtCreateSection |
| Status SUCCESS | |
1602142800.37 | NtMapViewOfSection |
| Status SUCCESS | |
1602142800.37 | 2 | NtClose |
| Status SUCCESS |
1602142800.37 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1992 | 4020 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142800.47 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142800.47 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142800.47 | LdrLoadDll |
| Status SUCCESS | |
1602142800.47 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142800.47 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142800.47 | NtCreateFile |
| Status SUCCESS | |
1602142800.47 | NtCreateSection |
| Status SUCCESS | |
1602142800.47 | NtMapViewOfSection |
| Status SUCCESS | |
1602142800.47 | 2 | NtClose |
| Status SUCCESS |
1602142800.47 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3716 | 1348 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142800.78 | NtOpenFile |
| Status SUCCESS | |
1602142800.78 | NtQueryInformationFile |
| Status SUCCESS | |
1602142800.78 | NtClose |
| Status SUCCESS | |
1602142800.78 | 18 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142800.81 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142800.81 | GetSystemInfo |
| Status SUCCESS | |
1602142800.81 | NtOpenKey |
| Status SUCCESS | |
1602142800.81 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142800.81 | NtQueryValueKey |
| Status SUCCESS | |
1602142800.81 | NtClose |
| Status SUCCESS |
cmd.exe | 3920 | 4020 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142800.62 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142800.62 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142800.62 | NtOpenThread |
| Status SUCCESS | |
1602142800.62 | LdrGetDllHandle |
| Status SUCCESS | |
1602142800.62 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142800.62 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142800.62 | RegOpenKeyExW |
| Status SUCCESS | |
1602142800.62 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142800.62 | RegQueryValueExW |
| Status SUCCESS | |
1602142800.62 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 3908 | 3920 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142801.05 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142801.05 | NtClose |
| Status SUCCESS | |
1602142801.05 | NtOpenKey |
| Status SUCCESS | |
1602142801.05 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142801.05 | NtClose |
| Status SUCCESS | |
1602142801.05 | NtOpenKey |
| Status SUCCESS | |
1602142801.05 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142801.05 | NtClose |
| Status SUCCESS | |
1602142801.05 | LdrLoadDll |
| Status SUCCESS | |
1602142801.05 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 3684 | 3716 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142805.9 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142805.9 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142805.9 | NtOpenThread |
| Status SUCCESS | |
1602142805.9 | LdrGetDllHandle |
| Status SUCCESS | |
1602142805.9 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142805.9 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142805.9 | RegOpenKeyExW |
| Status SUCCESS | |
1602142805.9 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142805.9 | RegQueryValueExW |
| Status SUCCESS | |
1602142805.9 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3512 | 3716 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142811.03 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142811.03 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142811.09 | LdrLoadDll |
| Status SUCCESS | |
1602142811.09 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142811.09 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142811.09 | NtCreateFile |
| Status SUCCESS | |
1602142811.09 | NtCreateSection |
| Status SUCCESS | |
1602142811.09 | NtMapViewOfSection |
| Status SUCCESS | |
1602142811.09 | 2 | NtClose |
| Status SUCCESS |
1602142811.09 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 1892 | 3684 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142826.38 | NtOpenFile |
| Status SUCCESS | |
1602142826.4 | NtQueryInformationFile |
| Status SUCCESS | |
1602142826.4 | NtClose |
| Status SUCCESS | |
1602142826.4 | 49 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142826.52 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142826.52 | GetSystemInfo |
| Status SUCCESS | |
1602142826.52 | NtOpenKey |
| Status SUCCESS | |
1602142826.52 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142826.52 | NtQueryValueKey |
| Status SUCCESS | |
1602142826.52 | NtClose |
| Status SUCCESS |
reg.exe | 1808 | 3716 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142811.23 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142811.23 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142811.23 | LdrLoadDll |
| Status SUCCESS | |
1602142811.23 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142811.23 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142811.23 | NtCreateFile |
| Status SUCCESS | |
1602142811.23 | NtCreateSection |
| Status SUCCESS | |
1602142811.23 | NtMapViewOfSection |
| Status SUCCESS | |
1602142811.23 | 2 | NtClose |
| Status SUCCESS |
1602142811.23 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1816 | 3716 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142814.04 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142814.04 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142814.04 | LdrLoadDll |
| Status SUCCESS | |
1602142814.04 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142814.04 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142814.04 | NtCreateFile |
| Status SUCCESS | |
1602142814.04 | NtCreateSection |
| Status SUCCESS | |
1602142814.04 | NtMapViewOfSection |
| Status SUCCESS | |
1602142814.04 | 2 | NtClose |
| Status SUCCESS |
1602142814.04 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3528 | 3716 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142816.55 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142816.55 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142816.55 | NtOpenThread |
| Status SUCCESS | |
1602142816.55 | LdrGetDllHandle |
| Status SUCCESS | |
1602142816.55 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142816.55 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142816.55 | RegOpenKeyExW |
| Status SUCCESS | |
1602142816.55 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142816.55 | RegQueryValueExW |
| Status SUCCESS | |
1602142816.55 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2456 | 3528 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142819.36 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142819.36 | NtClose |
| Status SUCCESS | |
1602142819.36 | NtOpenKey |
| Status SUCCESS | |
1602142819.36 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142819.36 | NtClose |
| Status SUCCESS | |
1602142819.36 | NtOpenKey |
| Status SUCCESS | |
1602142819.36 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142819.36 | NtClose |
| Status SUCCESS | |
1602142819.36 | LdrLoadDll |
| Status SUCCESS | |
1602142819.36 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 1476 | 1892 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142828.25 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142828.25 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142828.25 | NtOpenThread |
| Status SUCCESS | |
1602142828.25 | LdrGetDllHandle |
| Status SUCCESS | |
1602142828.25 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142828.25 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142828.25 | RegOpenKeyExW |
| Status SUCCESS | |
1602142828.25 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142828.25 | RegQueryValueExW |
| Status SUCCESS | |
1602142828.25 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2528 | 1476 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142836.72 | NtOpenFile |
| Status SUCCESS | |
1602142836.72 | NtQueryInformationFile |
| Status SUCCESS | |
1602142836.72 | NtClose |
| Status SUCCESS | |
1602142836.72 | 5 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142836.74 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142836.74 | GetSystemInfo |
| Status SUCCESS | |
1602142836.74 | NtOpenKey |
| Status SUCCESS | |
1602142836.74 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142836.74 | NtQueryValueKey |
| Status SUCCESS | |
1602142836.74 | NtClose |
| Status SUCCESS |
reg.exe | 3728 | 1892 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142830.56 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142830.56 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142830.56 | LdrLoadDll |
| Status SUCCESS | |
1602142830.56 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142830.56 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142830.56 | NtCreateFile |
| Status SUCCESS | |
1602142830.56 | NtCreateSection |
| Status SUCCESS | |
1602142830.56 | NtMapViewOfSection |
| Status SUCCESS | |
1602142830.56 | 2 | NtClose |
| Status SUCCESS |
1602142830.56 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3976 | 1892 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142834.38 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142834.38 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142834.38 | LdrLoadDll |
| Status SUCCESS | |
1602142834.38 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142834.38 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142834.4 | NtCreateFile |
| Status SUCCESS | |
1602142834.4 | NtCreateSection |
| Status SUCCESS | |
1602142834.4 | NtMapViewOfSection |
| Status SUCCESS | |
1602142834.4 | 2 | NtClose |
| Status SUCCESS |
1602142834.4 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3704 | 1892 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142836.38 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142836.38 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142836.4 | LdrLoadDll |
| Status SUCCESS | |
1602142836.4 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142836.4 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142836.4 | NtCreateFile |
| Status SUCCESS | |
1602142836.4 | NtCreateSection |
| Status SUCCESS | |
1602142836.4 | NtMapViewOfSection |
| Status SUCCESS | |
1602142836.4 | 2 | NtClose |
| Status SUCCESS |
1602142836.4 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3080 | 1892 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142836.55 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142836.55 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142836.55 | NtOpenThread |
| Status SUCCESS | |
1602142836.58 | LdrGetDllHandle |
| Status SUCCESS | |
1602142836.61 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142836.61 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142836.61 | RegOpenKeyExW |
| Status SUCCESS | |
1602142836.61 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142836.61 | RegQueryValueExW |
| Status SUCCESS | |
1602142836.61 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4032 | 3080 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142837.33 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142837.33 | NtClose |
| Status SUCCESS | |
1602142837.33 | NtOpenKey |
| Status SUCCESS | |
1602142837.33 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142837.33 | NtClose |
| Status SUCCESS | |
1602142837.33 | NtOpenKey |
| Status SUCCESS | |
1602142837.33 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142837.33 | NtClose |
| Status SUCCESS | |
1602142837.33 | LdrLoadDll |
| Status SUCCESS | |
1602142837.33 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 3116 | 2528 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142837.35 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142837.35 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142837.35 | NtOpenThread |
| Status SUCCESS | |
1602142837.35 | LdrGetDllHandle |
| Status SUCCESS | |
1602142837.35 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142837.35 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142837.35 | RegOpenKeyExW |
| Status SUCCESS | |
1602142837.35 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142837.35 | RegQueryValueExW |
| Status SUCCESS | |
1602142837.35 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3764 | 2528 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142837.49 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142837.49 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142837.49 | LdrLoadDll |
| Status SUCCESS | |
1602142837.49 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142837.49 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142837.49 | NtCreateFile |
| Status SUCCESS | |
1602142837.49 | NtCreateSection |
| Status SUCCESS | |
1602142837.49 | NtMapViewOfSection |
| Status SUCCESS | |
1602142837.49 | 2 | NtClose |
| Status SUCCESS |
1602142837.49 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2492 | 2528 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142837.6 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142837.6 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142837.6 | LdrLoadDll |
| Status SUCCESS | |
1602142837.6 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142837.6 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142837.6 | NtCreateFile |
| Status SUCCESS | |
1602142837.6 | NtCreateSection |
| Status SUCCESS | |
1602142837.6 | NtMapViewOfSection |
| Status SUCCESS | |
1602142837.6 | 2 | NtClose |
| Status SUCCESS |
1602142837.6 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 1896 | 3116 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142837.74 | NtOpenFile |
| Status SUCCESS | |
1602142837.74 | NtQueryInformationFile |
| Status SUCCESS | |
1602142837.74 | NtClose |
| Status SUCCESS | |
1602142837.74 | 39 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142837.75 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142837.75 | GetSystemInfo |
| Status SUCCESS | |
1602142837.75 | NtOpenKey |
| Status SUCCESS | |
1602142837.75 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142837.75 | NtQueryValueKey |
| Status SUCCESS | |
1602142837.75 | NtClose |
| Status SUCCESS |
reg.exe | 3996 | 2528 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142837.77 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142837.77 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142837.77 | LdrLoadDll |
| Status SUCCESS | |
1602142837.77 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142837.77 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142837.77 | NtCreateFile |
| Status SUCCESS | |
1602142837.77 | NtCreateSection |
| Status SUCCESS | |
1602142837.77 | NtMapViewOfSection |
| Status SUCCESS | |
1602142837.77 | 2 | NtClose |
| Status SUCCESS |
1602142837.77 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 1672 | 2528 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142837.69 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142837.69 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142837.69 | NtOpenThread |
| Status SUCCESS | |
1602142837.69 | LdrGetDllHandle |
| Status SUCCESS | |
1602142837.69 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142837.69 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142837.69 | RegOpenKeyExW |
| Status SUCCESS | |
1602142837.69 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142837.69 | RegQueryValueExW |
| Status SUCCESS | |
1602142837.69 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 1716 | 1672 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142837.96 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142837.96 | NtClose |
| Status SUCCESS | |
1602142837.96 | NtOpenKey |
| Status SUCCESS | |
1602142837.96 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142837.96 | NtClose |
| Status SUCCESS | |
1602142837.96 | NtOpenKey |
| Status SUCCESS | |
1602142837.96 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142837.96 | NtClose |
| Status SUCCESS | |
1602142837.96 | LdrLoadDll |
| Status SUCCESS | |
1602142837.96 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 1536 | 1896 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142838.24 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142838.24 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142838.24 | NtOpenThread |
| Status SUCCESS | |
1602142838.24 | LdrGetDllHandle |
| Status SUCCESS | |
1602142838.24 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142838.24 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142838.24 | RegOpenKeyExW |
| Status SUCCESS | |
1602142838.24 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142838.24 | RegQueryValueExW |
| Status SUCCESS | |
1602142838.24 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4012 | 1896 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142838.31 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142838.31 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142838.31 | LdrLoadDll |
| Status SUCCESS | |
1602142838.31 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142838.31 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142838.31 | NtCreateFile |
| Status SUCCESS | |
1602142838.31 | NtCreateSection |
| Status SUCCESS | |
1602142838.31 | NtMapViewOfSection |
| Status SUCCESS | |
1602142838.31 | 2 | NtClose |
| Status SUCCESS |
1602142838.31 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3836 | 1896 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142838.35 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142838.35 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142838.35 | LdrLoadDll |
| Status SUCCESS | |
1602142838.35 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142838.35 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142838.35 | NtCreateFile |
| Status SUCCESS | |
1602142838.35 | NtCreateSection |
| Status SUCCESS | |
1602142838.35 | NtMapViewOfSection |
| Status SUCCESS | |
1602142838.35 | 2 | NtClose |
| Status SUCCESS |
1602142838.35 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3456 | 1896 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142838.41 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142838.41 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142838.41 | LdrLoadDll |
| Status SUCCESS | |
1602142838.41 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142838.41 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142838.41 | NtCreateFile |
| Status SUCCESS | |
1602142838.41 | NtCreateSection |
| Status SUCCESS | |
1602142838.41 | NtMapViewOfSection |
| Status SUCCESS | |
1602142838.41 | 2 | NtClose |
| Status SUCCESS |
1602142838.41 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3500 | 1896 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142838.44 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142838.44 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142838.44 | NtOpenThread |
| Status SUCCESS | |
1602142838.44 | LdrGetDllHandle |
| Status SUCCESS | |
1602142838.44 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142838.44 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142838.44 | RegOpenKeyExW |
| Status SUCCESS | |
1602142838.44 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142838.44 | RegQueryValueExW |
| Status SUCCESS | |
1602142838.44 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3128 | 1536 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142838.61 | NtOpenFile |
| Status SUCCESS | |
1602142838.61 | NtQueryInformationFile |
| Status SUCCESS | |
1602142838.61 | NtClose |
| Status SUCCESS | |
1602142838.61 | 71 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142838.63 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142838.63 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142838.63 | LdrLoadDll |
| Status SUCCESS | |
1602142838.63 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142838.63 | NtOpenKey |
| Status SUCCESS | |
1602142838.63 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
cscript.exe | 3752 | 3500 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142838.66 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142838.66 | NtClose |
| Status SUCCESS | |
1602142838.66 | NtOpenKey |
| Status SUCCESS | |
1602142838.66 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142838.66 | NtClose |
| Status SUCCESS | |
1602142838.66 | NtOpenKey |
| Status SUCCESS | |
1602142838.66 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142838.66 | NtClose |
| Status SUCCESS | |
1602142838.66 | LdrLoadDll |
| Status SUCCESS | |
1602142838.66 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 860 | 3128 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142838.97 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142838.97 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142838.97 | NtOpenThread |
| Status SUCCESS | |
1602142838.97 | LdrGetDllHandle |
| Status SUCCESS | |
1602142838.97 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142838.97 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142838.97 | RegOpenKeyExW |
| Status SUCCESS | |
1602142838.97 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142838.97 | RegQueryValueExW |
| Status SUCCESS | |
1602142838.97 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 600 | 3128 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142839.08 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142839.08 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142839.08 | LdrLoadDll |
| Status SUCCESS | |
1602142839.08 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142839.08 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142839.08 | NtCreateFile |
| Status SUCCESS | |
1602142839.08 | NtCreateSection |
| Status SUCCESS | |
1602142839.08 | NtMapViewOfSection |
| Status SUCCESS | |
1602142839.08 | 2 | NtClose |
| Status SUCCESS |
1602142839.08 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3784 | 3128 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142839.16 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142839.16 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142839.16 | LdrLoadDll |
| Status SUCCESS | |
1602142839.16 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142839.16 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142839.16 | NtCreateFile |
| Status SUCCESS | |
1602142839.16 | NtCreateSection |
| Status SUCCESS | |
1602142839.16 | NtMapViewOfSection |
| Status SUCCESS | |
1602142839.16 | 2 | NtClose |
| Status SUCCESS |
1602142839.16 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3244 | 860 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142839.28 | NtOpenFile |
| Status SUCCESS | |
1602142839.28 | NtQueryInformationFile |
| Status SUCCESS | |
1602142839.28 | NtClose |
| Status SUCCESS | |
1602142839.28 | 26 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142839.28 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142839.28 | GetSystemInfo |
| Status SUCCESS | |
1602142839.28 | NtOpenKey |
| Status SUCCESS | |
1602142839.28 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142839.28 | NtQueryValueKey |
| Status SUCCESS | |
1602142839.28 | NtClose |
| Status SUCCESS |
cmd.exe | 2392 | 3128 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142839.25 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142839.25 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142839.25 | NtOpenThread |
| Status SUCCESS | |
1602142839.25 | LdrGetDllHandle |
| Status SUCCESS | |
1602142839.25 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142839.25 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142839.25 | RegOpenKeyExW |
| Status SUCCESS | |
1602142839.25 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142839.25 | RegQueryValueExW |
| Status SUCCESS | |
1602142839.25 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 2112 | 3128 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142839.33 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142839.33 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142839.33 | LdrLoadDll |
| Status SUCCESS | |
1602142839.33 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142839.33 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142839.33 | NtCreateFile |
| Status SUCCESS | |
1602142839.33 | NtCreateSection |
| Status SUCCESS | |
1602142839.33 | NtMapViewOfSection |
| Status SUCCESS | |
1602142839.33 | 2 | NtClose |
| Status SUCCESS |
1602142839.33 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4084 | 2392 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142839.47 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142839.47 | NtClose |
| Status SUCCESS | |
1602142839.47 | NtOpenKey |
| Status SUCCESS | |
1602142839.47 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142839.47 | NtClose |
| Status SUCCESS | |
1602142839.47 | NtOpenKey |
| Status SUCCESS | |
1602142839.47 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142839.47 | NtClose |
| Status SUCCESS | |
1602142839.47 | LdrLoadDll |
| Status SUCCESS | |
1602142839.47 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 3508 | 3244 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142839.73 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142839.73 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142839.73 | NtOpenThread |
| Status SUCCESS | |
1602142839.73 | LdrGetDllHandle |
| Status SUCCESS | |
1602142839.73 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142839.73 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142839.75 | RegOpenKeyExW |
| Status SUCCESS | |
1602142839.75 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142839.75 | RegQueryValueExW |
| Status SUCCESS | |
1602142839.75 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3160 | 3244 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142839.86 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142839.86 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142839.86 | LdrLoadDll |
| Status SUCCESS | |
1602142839.86 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142839.86 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142839.86 | NtCreateFile |
| Status SUCCESS | |
1602142839.86 | NtCreateSection |
| Status SUCCESS | |
1602142839.86 | NtMapViewOfSection |
| Status SUCCESS | |
1602142839.86 | 2 | NtClose |
| Status SUCCESS |
1602142839.86 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3532 | 3244 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142839.95 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142839.95 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142839.95 | LdrLoadDll |
| Status SUCCESS | |
1602142839.95 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142839.95 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142839.95 | NtCreateFile |
| Status SUCCESS | |
1602142839.95 | NtCreateSection |
| Status SUCCESS | |
1602142839.95 | NtMapViewOfSection |
| Status SUCCESS | |
1602142839.95 | 2 | NtClose |
| Status SUCCESS |
1602142839.95 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3496 | 3508 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.08 | NtOpenFile |
| Status SUCCESS | |
1602142840.08 | NtQueryInformationFile |
| Status SUCCESS | |
1602142840.08 | NtClose |
| Status SUCCESS | |
1602142840.08 | 13 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142840.09 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.09 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142840.09 | LdrLoadDll |
| Status SUCCESS | |
1602142840.09 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142840.09 | NtOpenKey |
| Status SUCCESS | |
1602142840.09 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 1112 | 3244 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.0 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.0 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142840.0 | LdrLoadDll |
| Status SUCCESS | |
1602142840.0 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142840.0 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142840.0 | NtCreateFile |
| Status SUCCESS | |
1602142840.0 | NtCreateSection |
| Status SUCCESS | |
1602142840.0 | NtMapViewOfSection |
| Status SUCCESS | |
1602142840.0 | 2 | NtClose |
| Status SUCCESS |
1602142840.0 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 1352 | 3244 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.05 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.05 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142840.05 | NtOpenThread |
| Status SUCCESS | |
1602142840.05 | LdrGetDllHandle |
| Status SUCCESS | |
1602142840.06 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142840.06 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142840.06 | RegOpenKeyExW |
| Status SUCCESS | |
1602142840.06 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142840.06 | RegQueryValueExW |
| Status SUCCESS | |
1602142840.06 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 504 | 1352 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.26 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.26 | NtClose |
| Status SUCCESS | |
1602142840.26 | NtOpenKey |
| Status SUCCESS | |
1602142840.26 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142840.26 | NtClose |
| Status SUCCESS | |
1602142840.26 | NtOpenKey |
| Status SUCCESS | |
1602142840.26 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142840.26 | NtClose |
| Status SUCCESS | |
1602142840.26 | LdrLoadDll |
| Status SUCCESS | |
1602142840.26 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 3520 | 3496 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.5 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.5 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142840.5 | NtOpenThread |
| Status SUCCESS | |
1602142840.5 | LdrGetDllHandle |
| Status SUCCESS | |
1602142840.5 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142840.5 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142840.5 | RegOpenKeyExW |
| Status SUCCESS | |
1602142840.5 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142840.5 | RegQueryValueExW |
| Status SUCCESS | |
1602142840.5 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 3316 | 3496 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.62 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.62 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142840.62 | LdrLoadDll |
| Status SUCCESS | |
1602142840.62 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142840.62 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142840.62 | NtCreateFile |
| Status SUCCESS | |
1602142840.62 | NtCreateSection |
| Status SUCCESS | |
1602142840.64 | NtMapViewOfSection |
| Status SUCCESS | |
1602142840.64 | 2 | NtClose |
| Status SUCCESS |
1602142840.64 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3276 | 3520 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.84 | NtOpenFile |
| Status SUCCESS | |
1602142840.86 | NtQueryInformationFile |
| Status SUCCESS | |
1602142840.86 | NtClose |
| Status SUCCESS | |
1602142840.86 | 56 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142840.86 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.86 | GetSystemInfo |
| Status SUCCESS | |
1602142840.86 | NtOpenKey |
| Status SUCCESS | |
1602142840.86 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142840.86 | NtQueryValueKey |
| Status SUCCESS | |
1602142840.86 | NtClose |
| Status SUCCESS |
reg.exe | 3264 | 3496 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.7 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.7 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142840.7 | LdrLoadDll |
| Status SUCCESS | |
1602142840.7 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142840.7 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142840.7 | NtCreateFile |
| Status SUCCESS | |
1602142840.7 | NtCreateSection |
| Status SUCCESS | |
1602142840.7 | NtMapViewOfSection |
| Status SUCCESS | |
1602142840.7 | 2 | NtClose |
| Status SUCCESS |
1602142840.7 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2276 | 3496 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.73 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.73 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142840.73 | LdrLoadDll |
| Status SUCCESS | |
1602142840.73 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142840.73 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142840.73 | NtCreateFile |
| Status SUCCESS | |
1602142840.73 | NtCreateSection |
| Status SUCCESS | |
1602142840.73 | NtMapViewOfSection |
| Status SUCCESS | |
1602142840.73 | 2 | NtClose |
| Status SUCCESS |
1602142840.73 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3648 | 3496 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142840.81 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142840.81 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142840.83 | NtOpenThread |
| Status SUCCESS | |
1602142840.83 | LdrGetDllHandle |
| Status SUCCESS | |
1602142840.83 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142840.83 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142840.83 | RegOpenKeyExW |
| Status SUCCESS | |
1602142840.83 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142840.83 | RegQueryValueExW |
| Status SUCCESS | |
1602142840.83 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 2396 | 3648 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142841.03 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142841.03 | NtClose |
| Status SUCCESS | |
1602142841.03 | NtOpenKey |
| Status SUCCESS | |
1602142841.03 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142841.03 | NtClose |
| Status SUCCESS | |
1602142841.03 | NtOpenKey |
| Status SUCCESS | |
1602142841.03 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142841.03 | NtClose |
| Status SUCCESS | |
1602142841.03 | LdrLoadDll |
| Status SUCCESS | |
1602142841.03 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 3460 | 3276 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142841.28 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142841.28 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142841.28 | NtOpenThread |
| Status SUCCESS | |
1602142841.28 | LdrGetDllHandle |
| Status SUCCESS | |
1602142841.29 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142841.29 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142841.29 | RegOpenKeyExW |
| Status SUCCESS | |
1602142841.29 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142841.29 | RegQueryValueExW |
| Status SUCCESS | |
1602142841.29 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 2228 | 3276 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142841.4 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142841.4 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142841.4 | LdrLoadDll |
| Status SUCCESS | |
1602142841.4 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142841.4 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142841.4 | NtCreateFile |
| Status SUCCESS | |
1602142841.4 | NtCreateSection |
| Status SUCCESS | |
1602142841.4 | NtMapViewOfSection |
| Status SUCCESS | |
1602142841.4 | 2 | NtClose |
| Status SUCCESS |
1602142841.4 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3876 | 3276 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142841.47 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142841.47 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142841.47 | LdrLoadDll |
| Status SUCCESS | |
1602142841.47 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142841.47 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142841.47 | NtCreateFile |
| Status SUCCESS | |
1602142841.47 | NtCreateSection |
| Status SUCCESS | |
1602142841.47 | NtMapViewOfSection |
| Status SUCCESS | |
1602142841.47 | 2 | NtClose |
| Status SUCCESS |
1602142841.47 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 1676 | 3460 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142841.59 | NtOpenFile |
| Status SUCCESS | |
1602142841.59 | NtQueryInformationFile |
| Status SUCCESS | |
1602142841.61 | NtClose |
| Status SUCCESS | |
1602142841.61 | 60 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142841.61 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142841.61 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142841.61 | LdrLoadDll |
| Status SUCCESS | |
1602142841.61 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142841.61 | NtOpenKey |
| Status SUCCESS | |
1602142841.61 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
cmd.exe | 2224 | 3276 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142841.56 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142841.56 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142841.56 | NtOpenThread |
| Status SUCCESS | |
1602142841.56 | LdrGetDllHandle |
| Status SUCCESS | |
1602142841.56 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142841.56 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142841.56 | RegOpenKeyExW |
| Status SUCCESS | |
1602142841.56 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142841.56 | RegQueryValueExW |
| Status SUCCESS | |
1602142841.56 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 2220 | 3276 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142841.62 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142841.62 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142841.62 | LdrLoadDll |
| Status SUCCESS | |
1602142841.62 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142841.64 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142841.64 | NtCreateFile |
| Status SUCCESS | |
1602142841.64 | NtCreateSection |
| Status SUCCESS | |
1602142841.64 | NtMapViewOfSection |
| Status SUCCESS | |
1602142841.64 | 2 | NtClose |
| Status SUCCESS |
1602142841.64 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 3668 | 2224 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142841.81 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142841.81 | NtClose |
| Status SUCCESS | |
1602142841.81 | NtOpenKey |
| Status SUCCESS | |
1602142841.81 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142841.81 | NtClose |
| Status SUCCESS | |
1602142841.82 | NtOpenKey |
| Status SUCCESS | |
1602142841.82 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142841.82 | NtClose |
| Status SUCCESS | |
1602142841.82 | LdrLoadDll |
| Status SUCCESS | |
1602142841.82 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 2256 | 1676 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142842.06 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142842.06 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142842.06 | NtOpenThread |
| Status SUCCESS | |
1602142842.06 | LdrGetDllHandle |
| Status SUCCESS | |
1602142842.06 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142842.06 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142842.06 | RegOpenKeyExW |
| Status SUCCESS | |
1602142842.06 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142842.06 | RegQueryValueExW |
| Status SUCCESS | |
1602142842.06 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2260 | 2256 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142842.34 | NtOpenFile |
| Status SUCCESS | |
1602142842.34 | NtQueryInformationFile |
| Status SUCCESS | |
1602142842.34 | NtClose |
| Status SUCCESS | |
1602142842.34 | 10 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142842.34 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142842.34 | GetSystemInfo |
| Status SUCCESS | |
1602142842.34 | NtOpenKey |
| Status SUCCESS | |
1602142842.34 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142842.34 | NtQueryValueKey |
| Status SUCCESS | |
1602142842.34 | NtClose |
| Status SUCCESS |
reg.exe | 3464 | 1676 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142842.32 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142842.32 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142842.32 | LdrLoadDll |
| Status SUCCESS | |
1602142842.32 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142842.32 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142842.32 | NtCreateFile |
| Status SUCCESS | |
1602142842.32 | NtCreateSection |
| Status SUCCESS | |
1602142842.32 | NtMapViewOfSection |
| Status SUCCESS | |
1602142842.32 | 2 | NtClose |
| Status SUCCESS |
1602142842.32 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 1484 | 1676 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142842.39 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142842.39 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142842.39 | LdrLoadDll |
| Status SUCCESS | |
1602142842.39 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142842.39 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142842.39 | NtCreateFile |
| Status SUCCESS | |
1602142842.39 | NtCreateSection |
| Status SUCCESS | |
1602142842.39 | NtMapViewOfSection |
| Status SUCCESS | |
1602142842.39 | 2 | NtClose |
| Status SUCCESS |
1602142842.39 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3192 | 1676 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142842.46 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142842.46 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142842.46 | LdrLoadDll |
| Status SUCCESS | |
1602142842.46 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142842.46 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142842.46 | NtCreateFile |
| Status SUCCESS | |
1602142842.46 | NtCreateSection |
| Status SUCCESS | |
1602142842.46 | NtMapViewOfSection |
| Status SUCCESS | |
1602142842.46 | 2 | NtClose |
| Status SUCCESS |
1602142842.46 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3096 | 1676 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142842.42 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142842.42 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142842.42 | NtOpenThread |
| Status SUCCESS | |
1602142842.42 | LdrGetDllHandle |
| Status SUCCESS | |
1602142842.42 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142842.42 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142842.42 | RegOpenKeyExW |
| Status SUCCESS | |
1602142842.42 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142842.42 | RegQueryValueExW |
| Status SUCCESS | |
1602142842.42 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4192 | 3096 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142842.6 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142842.62 | NtClose |
| Status SUCCESS | |
1602142842.62 | NtOpenKey |
| Status SUCCESS | |
1602142842.62 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142842.62 | NtClose |
| Status SUCCESS | |
1602142842.62 | NtOpenKey |
| Status SUCCESS | |
1602142842.62 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142842.62 | NtClose |
| Status SUCCESS | |
1602142842.62 | LdrLoadDll |
| Status SUCCESS | |
1602142842.62 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4240 | 2260 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142842.84 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142842.84 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142842.84 | NtOpenThread |
| Status SUCCESS | |
1602142842.84 | LdrGetDllHandle |
| Status SUCCESS | |
1602142842.84 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142842.84 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142842.84 | RegOpenKeyExW |
| Status SUCCESS | |
1602142842.84 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142842.84 | RegQueryValueExW |
| Status SUCCESS | |
1602142842.84 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4308 | 2260 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.01 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.01 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142843.01 | LdrLoadDll |
| Status SUCCESS | |
1602142843.01 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142843.01 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142843.01 | NtCreateFile |
| Status SUCCESS | |
1602142843.01 | NtCreateSection |
| Status SUCCESS | |
1602142843.01 | NtMapViewOfSection |
| Status SUCCESS | |
1602142843.01 | 2 | NtClose |
| Status SUCCESS |
1602142843.01 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4380 | 4240 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.1 | NtOpenFile |
| Status SUCCESS | |
1602142843.1 | NtQueryInformationFile |
| Status SUCCESS | |
1602142843.1 | NtClose |
| Status SUCCESS | |
1602142843.1 | 34 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142843.12 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.12 | GetSystemInfo |
| Status SUCCESS | |
1602142843.12 | NtOpenKey |
| Status SUCCESS | |
1602142843.12 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142843.12 | NtQueryValueKey |
| Status SUCCESS | |
1602142843.12 | NtClose |
| Status SUCCESS |
reg.exe | 4440 | 2260 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.12 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.12 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142843.12 | LdrLoadDll |
| Status SUCCESS | |
1602142843.12 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142843.12 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142843.12 | NtCreateFile |
| Status SUCCESS | |
1602142843.12 | NtCreateSection |
| Status SUCCESS | |
1602142843.12 | NtMapViewOfSection |
| Status SUCCESS | |
1602142843.12 | 2 | NtClose |
| Status SUCCESS |
1602142843.12 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4496 | 2260 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.2 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.2 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142843.2 | NtOpenThread |
| Status SUCCESS | |
1602142843.2 | LdrGetDllHandle |
| Status SUCCESS | |
1602142843.2 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142843.2 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142843.2 | RegOpenKeyExW |
| Status SUCCESS | |
1602142843.2 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142843.2 | RegQueryValueExW |
| Status SUCCESS | |
1602142843.2 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4348 | 2260 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.17 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.17 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142843.17 | LdrLoadDll |
| Status SUCCESS | |
1602142843.17 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142843.17 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142843.17 | NtCreateFile |
| Status SUCCESS | |
1602142843.17 | NtCreateSection |
| Status SUCCESS | |
1602142843.17 | NtMapViewOfSection |
| Status SUCCESS | |
1602142843.17 | 2 | NtClose |
| Status SUCCESS |
1602142843.17 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4592 | 4496 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.38 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.38 | NtClose |
| Status SUCCESS | |
1602142843.38 | NtOpenKey |
| Status SUCCESS | |
1602142843.38 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142843.38 | NtClose |
| Status SUCCESS | |
1602142843.38 | NtOpenKey |
| Status SUCCESS | |
1602142843.38 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142843.38 | NtClose |
| Status SUCCESS | |
1602142843.38 | LdrLoadDll |
| Status SUCCESS | |
1602142843.38 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4640 | 4380 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.48 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.48 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142843.48 | NtOpenThread |
| Status SUCCESS | |
1602142843.48 | LdrGetDllHandle |
| Status SUCCESS | |
1602142843.48 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142843.48 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142843.48 | RegOpenKeyExW |
| Status SUCCESS | |
1602142843.48 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142843.48 | RegQueryValueExW |
| Status SUCCESS | |
1602142843.48 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4700 | 4380 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.81 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.81 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142843.81 | LdrLoadDll |
| Status SUCCESS | |
1602142843.81 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142843.81 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142843.81 | NtCreateFile |
| Status SUCCESS | |
1602142843.81 | NtCreateSection |
| Status SUCCESS | |
1602142843.81 | NtMapViewOfSection |
| Status SUCCESS | |
1602142843.81 | 2 | NtClose |
| Status SUCCESS |
1602142843.81 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4752 | 4640 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.73 | NtOpenFile |
| Status SUCCESS | |
1602142843.73 | NtQueryInformationFile |
| Status SUCCESS | |
1602142843.73 | NtClose |
| Status SUCCESS | |
1602142843.73 | 52 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142843.74 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.74 | GetSystemInfo |
| Status SUCCESS | |
1602142843.74 | NtOpenKey |
| Status SUCCESS | |
1602142843.74 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142843.74 | NtQueryValueKey |
| Status SUCCESS | |
1602142843.74 | NtClose |
| Status SUCCESS |
reg.exe | 4788 | 4380 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.77 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.77 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142843.77 | LdrLoadDll |
| Status SUCCESS | |
1602142843.77 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142843.77 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142843.77 | NtCreateFile |
| Status SUCCESS | |
1602142843.77 | NtCreateSection |
| Status SUCCESS | |
1602142843.77 | NtMapViewOfSection |
| Status SUCCESS | |
1602142843.77 | 2 | NtClose |
| Status SUCCESS |
1602142843.79 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4848 | 4380 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.88 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.88 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142843.88 | LdrLoadDll |
| Status SUCCESS | |
1602142843.88 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142843.88 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142843.88 | NtCreateFile |
| Status SUCCESS | |
1602142843.88 | NtCreateSection |
| Status SUCCESS | |
1602142843.88 | NtMapViewOfSection |
| Status SUCCESS | |
1602142843.88 | 2 | NtClose |
| Status SUCCESS |
1602142843.88 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4904 | 4380 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142843.91 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142843.91 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142843.91 | NtOpenThread |
| Status SUCCESS | |
1602142843.91 | LdrGetDllHandle |
| Status SUCCESS | |
1602142843.91 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142843.91 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142843.91 | RegOpenKeyExW |
| Status SUCCESS | |
1602142843.91 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142843.91 | RegQueryValueExW |
| Status SUCCESS | |
1602142843.91 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 5000 | 4904 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142844.18 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142844.18 | NtClose |
| Status SUCCESS | |
1602142844.18 | NtOpenKey |
| Status SUCCESS | |
1602142844.18 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142844.18 | NtClose |
| Status SUCCESS | |
1602142844.18 | NtOpenKey |
| Status SUCCESS | |
1602142844.18 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142844.18 | NtClose |
| Status SUCCESS | |
1602142844.18 | LdrLoadDll |
| Status SUCCESS | |
1602142844.18 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 5020 | 4752 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142844.27 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142844.27 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142844.27 | NtOpenThread |
| Status SUCCESS | |
1602142844.27 | LdrGetDllHandle |
| Status SUCCESS | |
1602142844.27 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142844.27 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142844.27 | RegOpenKeyExW |
| Status SUCCESS | |
1602142844.27 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142844.27 | RegQueryValueExW |
| Status SUCCESS | |
1602142844.27 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 5092 | 4752 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142844.46 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142844.46 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142844.46 | LdrLoadDll |
| Status SUCCESS | |
1602142844.46 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142844.46 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142844.46 | NtCreateFile |
| Status SUCCESS | |
1602142844.46 | NtCreateSection |
| Status SUCCESS | |
1602142844.46 | NtMapViewOfSection |
| Status SUCCESS | |
1602142844.46 | 2 | NtClose |
| Status SUCCESS |
1602142844.46 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 3756 | 5020 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142844.99 | NtOpenFile |
| Status SUCCESS | |
1602142844.99 | NtQueryInformationFile |
| Status SUCCESS | |
1602142844.99 | NtClose |
| Status SUCCESS | |
1602142844.99 | 27 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142844.99 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142844.99 | GetSystemInfo |
| Status SUCCESS | |
1602142844.99 | NtOpenKey |
| Status SUCCESS | |
1602142844.99 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142844.99 | NtQueryValueKey |
| Status SUCCESS | |
1602142844.99 | NtClose |
| Status SUCCESS |
reg.exe | 4104 | 4752 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142845.05 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142845.05 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142845.05 | LdrLoadDll |
| Status SUCCESS | |
1602142845.05 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142845.05 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142845.05 | NtCreateFile |
| Status SUCCESS | |
1602142845.05 | NtCreateSection |
| Status SUCCESS | |
1602142845.05 | NtMapViewOfSection |
| Status SUCCESS | |
1602142845.05 | 2 | NtClose |
| Status SUCCESS |
1602142845.05 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2188 | 4752 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142845.29 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142845.29 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142845.29 | LdrLoadDll |
| Status SUCCESS | |
1602142845.29 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142845.29 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142845.29 | NtCreateFile |
| Status SUCCESS | |
1602142845.29 | NtCreateSection |
| Status SUCCESS | |
1602142845.29 | NtMapViewOfSection |
| Status SUCCESS | |
1602142845.29 | 2 | NtClose |
| Status SUCCESS |
1602142845.29 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4100 | 4752 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142845.46 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142845.46 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142845.46 | NtOpenThread |
| Status SUCCESS | |
1602142845.46 | LdrGetDllHandle |
| Status SUCCESS | |
1602142845.46 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142845.46 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142845.46 | RegOpenKeyExW |
| Status SUCCESS | |
1602142845.46 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142845.46 | RegQueryValueExW |
| Status SUCCESS | |
1602142845.46 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
DUckIoEY.exe | 4268 | 2636 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142849.05 | NtOpenFile |
| Status SUCCESS | |
1602142849.05 | NtQueryInformationFile |
| Status SUCCESS | |
1602142849.05 | NtClose |
| Status SUCCESS | |
1602142849.06 | 51 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142849.06 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142849.06 | GetSystemInfo |
| Status SUCCESS | |
1602142849.06 | NtOpenKey |
| Status SUCCESS | |
1602142849.06 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142849.06 | NtQueryValueKey |
| Status SUCCESS | |
1602142849.06 | NtClose |
| Status SUCCESS |
cmd.exe | 4392 | 3756 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142845.52 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142845.52 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142845.52 | NtOpenThread |
| Status SUCCESS | |
1602142845.52 | LdrGetDllHandle |
| Status SUCCESS | |
1602142845.52 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142845.52 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142845.52 | RegOpenKeyExW |
| Status SUCCESS | |
1602142845.52 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142845.52 | RegQueryValueExW |
| Status SUCCESS | |
1602142845.52 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4472 | 3756 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142845.74 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142845.74 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142845.74 | LdrLoadDll |
| Status SUCCESS | |
1602142845.74 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142845.76 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142845.76 | NtCreateFile |
| Status SUCCESS | |
1602142845.76 | NtCreateSection |
| Status SUCCESS | |
1602142845.76 | NtMapViewOfSection |
| Status SUCCESS | |
1602142845.77 | 2 | NtClose |
| Status SUCCESS |
1602142845.77 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4444 | 4100 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142845.85 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142845.85 | NtClose |
| Status SUCCESS | |
1602142845.85 | NtOpenKey |
| Status SUCCESS | |
1602142845.85 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142845.85 | NtClose |
| Status SUCCESS | |
1602142845.85 | NtOpenKey |
| Status SUCCESS | |
1602142845.85 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142845.85 | NtClose |
| Status SUCCESS | |
1602142845.85 | LdrLoadDll |
| Status SUCCESS | |
1602142845.85 | LdrGetProcedureAddress |
| Status SUCCESS |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4352 | 4392 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142846.1 | NtOpenFile |
| Status SUCCESS | |
1602142846.1 | NtQueryInformationFile |
| Status SUCCESS | |
1602142846.1 | NtClose |
| Status SUCCESS | |
1602142846.1 | 20 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142846.11 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142846.11 | GetSystemInfo |
| Status SUCCESS | |
1602142846.11 | NtOpenKey |
| Status SUCCESS | |
1602142846.11 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142846.11 | NtQueryValueKey |
| Status SUCCESS | |
1602142846.11 | NtClose |
| Status SUCCESS |
reg.exe | 4560 | 3756 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142846.11 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142846.11 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142846.11 | LdrLoadDll |
| Status SUCCESS | |
1602142846.11 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142846.13 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142846.13 | NtCreateFile |
| Status SUCCESS | |
1602142846.13 | NtCreateSection |
| Status SUCCESS | |
1602142846.13 | NtMapViewOfSection |
| Status SUCCESS | |
1602142846.13 | 2 | NtClose |
| Status SUCCESS |
1602142846.15 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4708 | 3756 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142846.08 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142846.08 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142846.08 | LdrLoadDll |
| Status SUCCESS | |
1602142846.08 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142846.08 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142846.08 | NtCreateFile |
| Status SUCCESS | |
1602142846.08 | NtCreateSection |
| Status SUCCESS | |
1602142846.08 | NtMapViewOfSection |
| Status SUCCESS | |
1602142846.08 | 2 | NtClose |
| Status SUCCESS |
1602142846.08 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4732 | 3756 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142846.24 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142846.24 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142846.24 | NtOpenThread |
| Status SUCCESS | |
1602142846.24 | LdrGetDllHandle |
| Status SUCCESS | |
1602142846.24 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142846.24 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142846.25 | RegOpenKeyExW |
| Status SUCCESS | |
1602142846.25 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142846.25 | RegQueryValueExW |
| Status SUCCESS | |
1602142846.25 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4952 | 4732 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142846.57 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142846.57 | NtClose |
| Status SUCCESS | |
1602142846.57 | NtOpenKey |
| Status SUCCESS | |
1602142846.57 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142846.57 | NtClose |
| Status SUCCESS | |
1602142846.57 | NtOpenKey |
| Status SUCCESS | |
1602142846.57 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142846.57 | NtClose |
| Status SUCCESS | |
1602142846.57 | LdrLoadDll |
| Status SUCCESS | |
1602142846.57 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4892 | 4352 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142846.61 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142846.63 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142846.63 | NtOpenThread |
| Status SUCCESS | |
1602142846.63 | LdrGetDllHandle |
| Status SUCCESS | |
1602142846.63 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142846.63 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142846.63 | RegOpenKeyExW |
| Status SUCCESS | |
1602142846.63 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142846.63 | RegQueryValueExW |
| Status SUCCESS | |
1602142846.63 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4924 | 4352 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142846.88 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142846.88 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142846.88 | LdrLoadDll |
| Status SUCCESS | |
1602142846.88 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142846.88 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142846.88 | NtCreateFile |
| Status SUCCESS | |
1602142846.88 | NtCreateSection |
| Status SUCCESS | |
1602142846.88 | NtMapViewOfSection |
| Status SUCCESS | |
1602142846.88 | 2 | NtClose |
| Status SUCCESS |
1602142846.88 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 5064 | 4352 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142848.75 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142848.75 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142848.75 | LdrLoadDll |
| Status SUCCESS | |
1602142848.75 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142848.75 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142848.75 | NtCreateFile |
| Status SUCCESS | |
1602142848.75 | NtCreateSection |
| Status SUCCESS | |
1602142848.75 | NtMapViewOfSection |
| Status SUCCESS | |
1602142848.75 | 2 | NtClose |
| Status SUCCESS |
1602142848.75 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 1820 | 4892 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142849.14 | NtOpenFile |
| Status SUCCESS | |
1602142849.14 | NtQueryInformationFile |
| Status SUCCESS | |
1602142849.14 | NtClose |
| Status SUCCESS | |
1602142849.14 | 31 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142849.16 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142849.16 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142849.16 | LdrLoadDll |
| Status SUCCESS | |
1602142849.16 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142849.16 | NtOpenKey |
| Status SUCCESS | |
1602142849.16 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 3900 | 4352 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142849.12 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142849.12 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142849.12 | LdrLoadDll |
| Status SUCCESS | |
1602142849.12 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142849.12 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142849.12 | NtCreateFile |
| Status SUCCESS | |
1602142849.12 | NtCreateSection |
| Status SUCCESS | |
1602142849.12 | NtMapViewOfSection |
| Status SUCCESS | |
1602142849.12 | 2 | NtClose |
| Status SUCCESS |
1602142849.14 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4216 | 4352 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142849.19 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142849.19 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142849.19 | NtOpenThread |
| Status SUCCESS | |
1602142849.19 | LdrGetDllHandle |
| Status SUCCESS | |
1602142849.19 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142849.19 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142849.19 | RegOpenKeyExW |
| Status SUCCESS | |
1602142849.19 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142849.19 | RegQueryValueExW |
| Status SUCCESS | |
1602142849.19 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4356 | 4216 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142849.37 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142849.37 | NtClose |
| Status SUCCESS | |
1602142849.37 | NtOpenKey |
| Status SUCCESS | |
1602142849.37 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142849.37 | NtClose |
| Status SUCCESS | |
1602142849.37 | NtOpenKey |
| Status SUCCESS | |
1602142849.37 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142849.37 | NtClose |
| Status SUCCESS | |
1602142849.37 | LdrLoadDll |
| Status SUCCESS | |
1602142849.37 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4504 | 1820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142849.64 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142849.64 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142849.64 | NtOpenThread |
| Status SUCCESS | |
1602142849.64 | LdrGetDllHandle |
| Status SUCCESS | |
1602142849.64 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142849.64 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142849.64 | RegOpenKeyExW |
| Status SUCCESS | |
1602142849.64 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142849.64 | RegQueryValueExW |
| Status SUCCESS | |
1602142849.64 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4604 | 1820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142849.97 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142849.97 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142849.97 | LdrLoadDll |
| Status SUCCESS | |
1602142849.97 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142849.97 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142849.97 | NtCreateFile |
| Status SUCCESS | |
1602142849.97 | NtCreateSection |
| Status SUCCESS | |
1602142849.97 | NtMapViewOfSection |
| Status SUCCESS | |
1602142849.97 | 2 | NtClose |
| Status SUCCESS |
1602142849.97 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4796 | 4504 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142850.17 | NtOpenFile |
| Status SUCCESS | |
1602142850.17 | NtQueryInformationFile |
| Status SUCCESS | |
1602142850.17 | NtClose |
| Status SUCCESS | |
1602142850.17 | 19 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142850.17 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142850.17 | GetSystemInfo |
| Status SUCCESS | |
1602142850.17 | NtOpenKey |
| Status SUCCESS | |
1602142850.17 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142850.17 | NtQueryValueKey |
| Status SUCCESS | |
1602142850.17 | NtClose |
| Status SUCCESS |
reg.exe | 4648 | 1820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142850.14 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142850.14 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142850.14 | LdrLoadDll |
| Status SUCCESS | |
1602142850.14 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142850.14 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142850.14 | NtCreateFile |
| Status SUCCESS | |
1602142850.14 | NtCreateSection |
| Status SUCCESS | |
1602142850.14 | NtMapViewOfSection |
| Status SUCCESS | |
1602142850.14 | 2 | NtClose |
| Status SUCCESS |
1602142850.14 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4500 | 1820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142850.31 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142850.31 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142850.31 | LdrLoadDll |
| Status SUCCESS | |
1602142850.31 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142850.31 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142850.31 | NtCreateFile |
| Status SUCCESS | |
1602142850.31 | NtCreateSection |
| Status SUCCESS | |
1602142850.31 | NtMapViewOfSection |
| Status SUCCESS | |
1602142850.31 | 2 | NtClose |
| Status SUCCESS |
1602142850.31 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4916 | 1820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142852.29 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142852.29 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142852.29 | NtOpenThread |
| Status SUCCESS | |
1602142852.29 | LdrGetDllHandle |
| Status SUCCESS | |
1602142852.29 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142852.29 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142852.29 | RegOpenKeyExW |
| Status SUCCESS | |
1602142852.29 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142852.29 | RegQueryValueExW |
| Status SUCCESS | |
1602142852.29 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4244 | 4796 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142854.05 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142854.05 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142854.05 | NtOpenThread |
| Status SUCCESS | |
1602142854.05 | LdrGetDllHandle |
| Status SUCCESS | |
1602142854.05 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142854.05 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142854.05 | RegOpenKeyExW |
| Status SUCCESS | |
1602142854.05 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142854.05 | RegQueryValueExW |
| Status SUCCESS | |
1602142854.05 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 5032 | 4916 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142854.15 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142854.15 | NtClose |
| Status SUCCESS | |
1602142854.15 | NtOpenKey |
| Status SUCCESS | |
1602142854.15 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142854.15 | NtClose |
| Status SUCCESS | |
1602142854.15 | NtOpenKey |
| Status SUCCESS | |
1602142854.15 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142854.15 | NtClose |
| Status SUCCESS | |
1602142854.15 | LdrLoadDll |
| Status SUCCESS | |
1602142854.15 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 5080 | 4796 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142854.24 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142854.24 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142854.24 | LdrLoadDll |
| Status SUCCESS | |
1602142854.24 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142854.24 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142854.26 | NtCreateFile |
| Status SUCCESS | |
1602142854.26 | NtCreateSection |
| Status SUCCESS | |
1602142854.26 | NtMapViewOfSection |
| Status SUCCESS | |
1602142854.26 | 2 | NtClose |
| Status SUCCESS |
1602142854.26 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4696 | 4244 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142854.44 | NtOpenFile |
| Status SUCCESS | |
1602142854.44 | NtQueryInformationFile |
| Status SUCCESS | |
1602142854.44 | NtClose |
| Status SUCCESS | |
1602142854.44 | 56 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142854.46 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142854.46 | GetSystemInfo |
| Status SUCCESS | |
1602142854.46 | NtOpenKey |
| Status SUCCESS | |
1602142854.46 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142854.46 | NtQueryValueKey |
| Status SUCCESS | |
1602142854.46 | NtClose |
| Status SUCCESS |
reg.exe | 3324 | 4796 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142854.58 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142854.58 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142854.58 | LdrLoadDll |
| Status SUCCESS | |
1602142854.58 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142854.58 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142854.58 | NtCreateFile |
| Status SUCCESS | |
1602142854.58 | NtCreateSection |
| Status SUCCESS | |
1602142854.58 | NtMapViewOfSection |
| Status SUCCESS | |
1602142854.58 | 2 | NtClose |
| Status SUCCESS |
1602142854.58 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4208 | 4796 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142855.12 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142855.12 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142855.12 | LdrLoadDll |
| Status SUCCESS | |
1602142855.12 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142855.12 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142855.12 | NtCreateFile |
| Status SUCCESS | |
1602142855.12 | NtCreateSection |
| Status SUCCESS | |
1602142855.12 | NtMapViewOfSection |
| Status SUCCESS | |
1602142855.12 | 2 | NtClose |
| Status SUCCESS |
1602142855.12 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4528 | 4796 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142855.32 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142855.32 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142855.32 | NtOpenThread |
| Status SUCCESS | |
1602142855.32 | LdrGetDllHandle |
| Status SUCCESS | |
1602142855.32 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142855.32 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142855.32 | RegOpenKeyExW |
| Status SUCCESS | |
1602142855.32 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142855.32 | RegQueryValueExW |
| Status SUCCESS | |
1602142855.32 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4260 | 4528 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142858.95 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142858.95 | NtClose |
| Status SUCCESS | |
1602142858.95 | NtOpenKey |
| Status SUCCESS | |
1602142858.95 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142858.95 | NtClose |
| Status SUCCESS | |
1602142858.95 | NtOpenKey |
| Status SUCCESS | |
1602142858.95 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142858.95 | NtClose |
| Status SUCCESS | |
1602142858.95 | LdrLoadDll |
| Status SUCCESS | |
1602142858.95 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4424 | 4696 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142859.11 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142859.11 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142859.11 | NtOpenThread |
| Status SUCCESS | |
1602142859.11 | LdrGetDllHandle |
| Status SUCCESS | |
1602142859.11 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142859.14 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142859.34 | RegOpenKeyExW |
| Status SUCCESS | |
1602142859.34 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142859.34 | RegQueryValueExW |
| Status SUCCESS | |
1602142859.34 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4660 | 4696 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142859.67 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142859.67 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142859.67 | LdrLoadDll |
| Status SUCCESS | |
1602142859.67 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142859.67 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142859.67 | NtCreateFile |
| Status SUCCESS | |
1602142859.67 | NtCreateSection |
| Status SUCCESS | |
1602142859.67 | NtMapViewOfSection |
| Status SUCCESS | |
1602142859.67 | 2 | NtClose |
| Status SUCCESS |
1602142859.67 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 5084 | 4424 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142859.78 | NtOpenFile |
| Status SUCCESS | |
1602142859.78 | NtQueryInformationFile |
| Status SUCCESS | |
1602142859.78 | NtClose |
| Status SUCCESS | |
1602142859.78 | 62 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142859.78 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142859.78 | GetSystemInfo |
| Status SUCCESS | |
1602142859.78 | NtOpenKey |
| Status SUCCESS | |
1602142859.78 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142859.78 | NtQueryValueKey |
| Status SUCCESS | |
1602142859.78 | NtClose |
| Status SUCCESS |
reg.exe | 4748 | 4696 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142859.8 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142859.8 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142859.8 | LdrLoadDll |
| Status SUCCESS | |
1602142859.8 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142859.8 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142859.8 | NtCreateFile |
| Status SUCCESS | |
1602142859.8 | NtCreateSection |
| Status SUCCESS | |
1602142859.8 | NtMapViewOfSection |
| Status SUCCESS | |
1602142859.8 | 2 | NtClose |
| Status SUCCESS |
1602142859.8 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4652 | 4696 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142859.87 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142859.87 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142859.87 | LdrLoadDll |
| Status SUCCESS | |
1602142859.87 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142859.87 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142859.87 | NtCreateFile |
| Status SUCCESS | |
1602142859.87 | NtCreateSection |
| Status SUCCESS | |
1602142859.87 | NtMapViewOfSection |
| Status SUCCESS | |
1602142859.87 | 2 | NtClose |
| Status SUCCESS |
1602142859.87 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 5108 | 4696 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142859.98 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142859.98 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142859.98 | NtOpenThread |
| Status SUCCESS | |
1602142859.98 | LdrGetDllHandle |
| Status SUCCESS | |
1602142859.98 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142859.98 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142859.98 | RegOpenKeyExW |
| Status SUCCESS | |
1602142859.98 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142859.98 | RegQueryValueExW |
| Status SUCCESS | |
1602142859.98 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4168 | 5108 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142860.22 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142860.22 | NtClose |
| Status SUCCESS | |
1602142860.22 | NtOpenKey |
| Status SUCCESS | |
1602142860.22 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142860.22 | NtClose |
| Status SUCCESS | |
1602142860.22 | NtOpenKey |
| Status SUCCESS | |
1602142860.22 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142860.22 | NtClose |
| Status SUCCESS | |
1602142860.22 | LdrLoadDll |
| Status SUCCESS | |
1602142860.22 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4252 | 5084 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142860.34 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142860.36 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142860.36 | NtOpenThread |
| Status SUCCESS | |
1602142860.36 | LdrGetDllHandle |
| Status SUCCESS | |
1602142860.36 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142860.36 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142860.36 | RegOpenKeyExW |
| Status SUCCESS | |
1602142860.36 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142860.36 | RegQueryValueExW |
| Status SUCCESS | |
1602142860.36 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4820 | 4252 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142860.76 | NtOpenFile |
| Status SUCCESS | |
1602142860.76 | NtQueryInformationFile |
| Status SUCCESS | |
1602142860.76 | NtClose |
| Status SUCCESS | |
1602142860.76 | 14 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142860.76 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142860.76 | GetSystemInfo |
| Status SUCCESS | |
1602142860.76 | NtOpenKey |
| Status SUCCESS | |
1602142860.78 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142860.78 | NtQueryValueKey |
| Status SUCCESS | |
1602142860.78 | NtClose |
| Status SUCCESS |
reg.exe | 4780 | 5084 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142860.73 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142860.73 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142860.73 | LdrLoadDll |
| Status SUCCESS | |
1602142860.73 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142860.73 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142860.73 | NtCreateFile |
| Status SUCCESS | |
1602142860.73 | NtCreateSection |
| Status SUCCESS | |
1602142860.73 | NtMapViewOfSection |
| Status SUCCESS | |
1602142860.73 | 2 | NtClose |
| Status SUCCESS |
1602142860.73 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4396 | 5084 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142860.81 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142860.81 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142860.81 | LdrLoadDll |
| Status SUCCESS | |
1602142860.81 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142860.81 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142860.81 | NtCreateFile |
| Status SUCCESS | |
1602142860.81 | NtCreateSection |
| Status SUCCESS | |
1602142860.81 | NtMapViewOfSection |
| Status SUCCESS | |
1602142860.81 | 2 | NtClose |
| Status SUCCESS |
1602142860.81 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4772 | 5084 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142861.14 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142861.14 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142861.14 | LdrLoadDll |
| Status SUCCESS | |
1602142861.15 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142861.15 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142861.15 | NtCreateFile |
| Status SUCCESS | |
1602142861.15 | NtCreateSection |
| Status SUCCESS | |
1602142861.15 | NtMapViewOfSection |
| Status SUCCESS | |
1602142861.15 | 2 | NtClose |
| Status SUCCESS |
1602142861.15 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4672 | 5084 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142861.2 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142861.2 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142861.2 | NtOpenThread |
| Status SUCCESS | |
1602142861.2 | LdrGetDllHandle |
| Status SUCCESS | |
1602142861.2 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142861.2 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142861.2 | RegOpenKeyExW |
| Status SUCCESS | |
1602142861.2 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142861.2 | RegQueryValueExW |
| Status SUCCESS | |
1602142861.2 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 5096 | 4820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142861.26 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142861.28 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142861.28 | NtOpenThread |
| Status SUCCESS | |
1602142861.28 | LdrGetDllHandle |
| Status SUCCESS | |
1602142861.28 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142861.28 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142861.28 | RegOpenKeyExW |
| Status SUCCESS | |
1602142861.28 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142861.28 | RegQueryValueExW |
| Status SUCCESS | |
1602142861.28 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4896 | 4672 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142861.51 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142861.51 | NtClose |
| Status SUCCESS | |
1602142861.51 | NtOpenKey |
| Status SUCCESS | |
1602142861.51 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142861.51 | NtClose |
| Status SUCCESS | |
1602142861.51 | NtOpenKey |
| Status SUCCESS | |
1602142861.51 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142861.51 | NtClose |
| Status SUCCESS | |
1602142861.51 | LdrLoadDll |
| Status SUCCESS | |
1602142861.51 | LdrGetProcedureAddress |
| Status SUCCESS |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4136 | 5096 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142861.75 | NtOpenFile |
| Status SUCCESS | |
1602142861.75 | NtQueryInformationFile |
| Status SUCCESS | |
1602142861.75 | NtClose |
| Status SUCCESS | |
1602142861.75 | 38 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142861.76 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142861.76 | GetSystemInfo |
| Status SUCCESS | |
1602142861.76 | NtOpenKey |
| Status SUCCESS | |
1602142861.76 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142861.76 | NtQueryValueKey |
| Status SUCCESS | |
1602142861.76 | NtClose |
| Status SUCCESS |
reg.exe | 4556 | 4820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142861.85 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142861.85 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142861.85 | LdrLoadDll |
| Status SUCCESS | |
1602142861.85 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142861.85 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142861.85 | NtCreateFile |
| Status SUCCESS | |
1602142861.85 | NtCreateSection |
| Status SUCCESS | |
1602142861.85 | NtMapViewOfSection |
| Status SUCCESS | |
1602142861.85 | 2 | NtClose |
| Status SUCCESS |
1602142861.85 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 756 | 4820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142861.56 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142861.56 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142861.56 | LdrLoadDll |
| Status SUCCESS | |
1602142861.56 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142861.56 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142861.56 | NtCreateFile |
| Status SUCCESS | |
1602142861.56 | NtCreateSection |
| Status SUCCESS | |
1602142861.56 | NtMapViewOfSection |
| Status SUCCESS | |
1602142861.56 | 2 | NtClose |
| Status SUCCESS |
1602142861.56 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4988 | 4820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142861.73 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142861.73 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142861.73 | LdrLoadDll |
| Status SUCCESS | |
1602142861.73 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142861.73 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142861.73 | NtCreateFile |
| Status SUCCESS | |
1602142861.73 | NtCreateSection |
| Status SUCCESS | |
1602142861.73 | NtMapViewOfSection |
| Status SUCCESS | |
1602142861.73 | 2 | NtClose |
| Status SUCCESS |
1602142861.73 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3672 | 4820 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142861.95 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142861.95 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142861.95 | NtOpenThread |
| Status SUCCESS | |
1602142861.95 | LdrGetDllHandle |
| Status SUCCESS | |
1602142861.95 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142861.95 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142861.95 | RegOpenKeyExW |
| Status SUCCESS | |
1602142861.95 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142861.95 | RegQueryValueExW |
| Status SUCCESS | |
1602142861.95 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4956 | 3672 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142862.18 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142862.18 | NtClose |
| Status SUCCESS | |
1602142862.18 | NtOpenKey |
| Status SUCCESS | |
1602142862.18 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142862.18 | NtClose |
| Status SUCCESS | |
1602142862.18 | NtOpenKey |
| Status SUCCESS | |
1602142862.18 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142862.18 | NtClose |
| Status SUCCESS | |
1602142862.18 | LdrLoadDll |
| Status SUCCESS | |
1602142862.18 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 5016 | 4136 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142862.34 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142862.34 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142862.34 | NtOpenThread |
| Status SUCCESS | |
1602142862.34 | LdrGetDllHandle |
| Status SUCCESS | |
1602142862.34 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142862.34 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142862.34 | RegOpenKeyExW |
| Status SUCCESS | |
1602142862.34 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142862.34 | RegQueryValueExW |
| Status SUCCESS | |
1602142862.34 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 2464 | 5016 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142862.67 | NtOpenFile |
| Status SUCCESS | |
1602142862.67 | NtQueryInformationFile |
| Status SUCCESS | |
1602142862.67 | NtClose |
| Status SUCCESS | |
1602142862.68 | 42 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142862.68 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142862.68 | GetSystemInfo |
| Status SUCCESS | |
1602142862.68 | NtOpenKey |
| Status SUCCESS | |
1602142862.68 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142862.68 | NtQueryValueKey |
| Status SUCCESS | |
1602142862.68 | NtClose |
| Status SUCCESS |
reg.exe | 5052 | 4136 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142862.73 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142862.73 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142862.73 | LdrLoadDll |
| Status SUCCESS | |
1602142862.73 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142862.73 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142862.73 | NtCreateFile |
| Status SUCCESS | |
1602142862.73 | NtCreateSection |
| Status SUCCESS | |
1602142862.73 | NtMapViewOfSection |
| Status SUCCESS | |
1602142862.73 | 2 | NtClose |
| Status SUCCESS |
1602142862.73 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4328 | 4136 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142862.79 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142862.79 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142862.79 | LdrLoadDll |
| Status SUCCESS | |
1602142862.79 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142862.79 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142862.79 | NtCreateFile |
| Status SUCCESS | |
1602142862.79 | NtCreateSection |
| Status SUCCESS | |
1602142862.79 | NtMapViewOfSection |
| Status SUCCESS | |
1602142862.79 | 2 | NtClose |
| Status SUCCESS |
1602142862.79 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 5036 | 4136 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142862.96 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142862.96 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142862.96 | LdrLoadDll |
| Status SUCCESS | |
1602142862.96 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142862.96 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142862.96 | NtCreateFile |
| Status SUCCESS | |
1602142862.96 | NtCreateSection |
| Status SUCCESS | |
1602142862.96 | NtMapViewOfSection |
| Status SUCCESS | |
1602142862.96 | 2 | NtClose |
| Status SUCCESS |
1602142862.96 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 2668 | 4136 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142862.87 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142862.87 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142862.87 | NtOpenThread |
| Status SUCCESS | |
1602142862.87 | LdrGetDllHandle |
| Status SUCCESS | |
1602142862.87 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142862.87 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142862.87 | RegOpenKeyExW |
| Status SUCCESS | |
1602142862.87 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142862.87 | RegQueryValueExW |
| Status SUCCESS | |
1602142862.87 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4128 | 2668 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142863.07 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142863.07 | NtClose |
| Status SUCCESS | |
1602142863.07 | NtOpenKey |
| Status SUCCESS | |
1602142863.07 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142863.07 | NtClose |
| Status SUCCESS | |
1602142863.07 | NtOpenKey |
| Status SUCCESS | |
1602142863.07 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142863.07 | NtClose |
| Status SUCCESS | |
1602142863.07 | LdrLoadDll |
| Status SUCCESS | |
1602142863.07 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4664 | 2464 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142863.37 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142863.37 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142863.37 | NtOpenThread |
| Status SUCCESS | |
1602142863.37 | LdrGetDllHandle |
| Status SUCCESS | |
1602142863.37 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142863.37 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142863.37 | RegOpenKeyExW |
| Status SUCCESS | |
1602142863.37 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142863.37 | RegQueryValueExW |
| Status SUCCESS | |
1602142863.37 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4408 | 2464 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142863.54 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142863.54 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142863.54 | LdrLoadDll |
| Status SUCCESS | |
1602142863.54 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142863.54 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142863.54 | NtCreateFile |
| Status SUCCESS | |
1602142863.54 | NtCreateSection |
| Status SUCCESS | |
1602142863.54 | NtMapViewOfSection |
| Status SUCCESS | |
1602142863.54 | 2 | NtClose |
| Status SUCCESS |
1602142863.54 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4148 | 2464 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142863.63 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142863.63 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142863.63 | LdrLoadDll |
| Status SUCCESS | |
1602142863.63 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142863.63 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142863.65 | NtCreateFile |
| Status SUCCESS | |
1602142863.65 | NtCreateSection |
| Status SUCCESS | |
1602142863.65 | NtMapViewOfSection |
| Status SUCCESS | |
1602142863.65 | 2 | NtClose |
| Status SUCCESS |
1602142863.65 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4644 | 2464 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142863.66 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142863.66 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142863.66 | LdrLoadDll |
| Status SUCCESS | |
1602142863.66 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142863.66 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142863.66 | NtCreateFile |
| Status SUCCESS | |
1602142863.66 | NtCreateSection |
| Status SUCCESS | |
1602142863.66 | NtMapViewOfSection |
| Status SUCCESS | |
1602142863.66 | 2 | NtClose |
| Status SUCCESS |
1602142863.66 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 3404 | 2464 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142863.7 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142863.7 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142863.7 | NtOpenThread |
| Status SUCCESS | |
1602142863.7 | LdrGetDllHandle |
| Status SUCCESS | |
1602142863.7 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142863.7 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142863.7 | RegOpenKeyExW |
| Status SUCCESS | |
1602142863.7 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142863.7 | RegQueryValueExW |
| Status SUCCESS | |
1602142863.7 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4404 | 4664 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142863.85 | NtOpenFile |
| Status SUCCESS | |
1602142863.85 | NtQueryInformationFile |
| Status SUCCESS | |
1602142863.85 | NtClose |
| Status SUCCESS | |
1602142863.85 | 51 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142863.85 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142863.85 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142863.85 | LdrLoadDll |
| Status SUCCESS | |
1602142863.85 | 3 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142863.85 | NtOpenKey |
| Status SUCCESS | |
1602142863.85 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
cscript.exe | 4968 | 3404 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142863.91 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142863.91 | NtClose |
| Status SUCCESS | |
1602142863.91 | NtOpenKey |
| Status SUCCESS | |
1602142863.91 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142863.91 | NtClose |
| Status SUCCESS | |
1602142863.91 | NtOpenKey |
| Status SUCCESS | |
1602142863.91 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142863.91 | NtClose |
| Status SUCCESS | |
1602142863.91 | LdrLoadDll |
| Status SUCCESS | |
1602142863.91 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4856 | 4404 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142864.3 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142864.3 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142864.3 | NtOpenThread |
| Status SUCCESS | |
1602142864.3 | LdrGetDllHandle |
| Status SUCCESS | |
1602142864.3 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142864.3 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142864.3 | RegOpenKeyExW |
| Status SUCCESS | |
1602142864.3 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142864.3 | RegQueryValueExW |
| Status SUCCESS | |
1602142864.3 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4684 | 4404 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142864.41 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142864.41 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142864.41 | LdrLoadDll |
| Status SUCCESS | |
1602142864.41 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142864.41 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142864.41 | NtCreateFile |
| Status SUCCESS | |
1602142864.41 | NtCreateSection |
| Status SUCCESS | |
1602142864.41 | NtMapViewOfSection |
| Status SUCCESS | |
1602142864.41 | 2 | NtClose |
| Status SUCCESS |
1602142864.41 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4768 | 4404 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142864.51 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142864.51 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142864.52 | LdrLoadDll |
| Status SUCCESS | |
1602142864.52 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142864.52 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142864.52 | NtCreateFile |
| Status SUCCESS | |
1602142864.52 | NtCreateSection |
| Status SUCCESS | |
1602142864.52 | NtMapViewOfSection |
| Status SUCCESS | |
1602142864.52 | 2 | NtClose |
| Status SUCCESS |
1602142864.52 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 5116 | 4856 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142864.68 | NtOpenFile |
| Status SUCCESS | |
1602142864.68 | NtQueryInformationFile |
| Status SUCCESS | |
1602142864.68 | NtClose |
| Status SUCCESS | |
1602142864.68 | 57 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142864.68 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142864.68 | GetSystemInfo |
| Status SUCCESS | |
1602142864.68 | NtOpenKey |
| Status SUCCESS | |
1602142864.69 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142864.69 | NtQueryValueKey |
| Status SUCCESS | |
1602142864.69 | NtClose |
| Status SUCCESS |
reg.exe | 4344 | 4404 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142864.6 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142864.6 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142864.6 | LdrLoadDll |
| Status SUCCESS | |
1602142864.6 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142864.6 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142864.6 | NtCreateFile |
| Status SUCCESS | |
1602142864.6 | NtCreateSection |
| Status SUCCESS | |
1602142864.6 | NtMapViewOfSection |
| Status SUCCESS | |
1602142864.6 | 2 | NtClose |
| Status SUCCESS |
1602142864.6 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4452 | 4404 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142864.62 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142864.62 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142864.62 | NtOpenThread |
| Status SUCCESS | |
1602142864.62 | LdrGetDllHandle |
| Status SUCCESS | |
1602142864.62 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142864.62 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142864.62 | RegOpenKeyExW |
| Status SUCCESS | |
1602142864.62 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142864.62 | RegQueryValueExW |
| Status SUCCESS | |
1602142864.62 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4928 | 4452 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142864.87 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142864.87 | NtClose |
| Status SUCCESS | |
1602142864.87 | NtOpenKey |
| Status SUCCESS | |
1602142864.87 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142864.87 | NtClose |
| Status SUCCESS | |
1602142864.87 | NtOpenKey |
| Status SUCCESS | |
1602142864.87 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142864.87 | NtClose |
| Status SUCCESS | |
1602142864.87 | LdrLoadDll |
| Status SUCCESS | |
1602142864.87 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4212 | 5116 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142865.18 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142865.18 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142865.18 | NtOpenThread |
| Status SUCCESS | |
1602142865.18 | LdrGetDllHandle |
| Status SUCCESS | |
1602142865.18 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142865.18 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142865.18 | RegOpenKeyExW |
| Status SUCCESS | |
1602142865.18 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142865.18 | RegQueryValueExW |
| Status SUCCESS | |
1602142865.18 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 1528 | 5116 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142865.46 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142865.46 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142865.46 | LdrLoadDll |
| Status SUCCESS | |
1602142865.46 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142865.46 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142865.46 | NtCreateFile |
| Status SUCCESS | |
1602142865.46 | NtCreateSection |
| Status SUCCESS | |
1602142865.46 | NtMapViewOfSection |
| Status SUCCESS | |
1602142865.46 | 2 | NtClose |
| Status SUCCESS |
1602142865.46 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 5068 | 5116 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142865.63 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142865.63 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142865.63 | LdrLoadDll |
| Status SUCCESS | |
1602142865.63 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142865.63 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142865.63 | NtCreateFile |
| Status SUCCESS | |
1602142865.63 | NtCreateSection |
| Status SUCCESS | |
1602142865.63 | NtMapViewOfSection |
| Status SUCCESS | |
1602142865.63 | 2 | NtClose |
| Status SUCCESS |
1602142865.63 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4992 | 4212 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142865.57 | NtOpenFile |
| Status SUCCESS | |
1602142865.57 | NtQueryInformationFile |
| Status SUCCESS | |
1602142865.57 | NtClose |
| Status SUCCESS | |
1602142865.58 | 46 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142865.58 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142865.58 | GetSystemInfo |
| Status SUCCESS | |
1602142865.58 | NtOpenKey |
| Status SUCCESS | |
1602142865.58 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142865.58 | NtQueryValueKey |
| Status SUCCESS | |
1602142865.58 | NtClose |
| Status SUCCESS |
reg.exe | 4544 | 5116 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142865.74 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142865.74 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142865.74 | LdrLoadDll |
| Status SUCCESS | |
1602142865.74 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142865.74 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142865.74 | NtCreateFile |
| Status SUCCESS | |
1602142865.74 | NtCreateSection |
| Status SUCCESS | |
1602142865.74 | NtMapViewOfSection |
| Status SUCCESS | |
1602142865.74 | 2 | NtClose |
| Status SUCCESS |
1602142865.74 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4152 | 5116 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142865.75 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142865.75 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142865.75 | NtOpenThread |
| Status SUCCESS | |
1602142865.75 | LdrGetDllHandle |
| Status SUCCESS | |
1602142865.75 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142865.75 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142865.75 | RegOpenKeyExW |
| Status SUCCESS | |
1602142865.75 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142865.75 | RegQueryValueExW |
| Status SUCCESS | |
1602142865.75 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 5012 | 4152 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142865.97 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142865.97 | NtClose |
| Status SUCCESS | |
1602142865.97 | NtOpenKey |
| Status SUCCESS | |
1602142865.97 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142865.97 | NtClose |
| Status SUCCESS | |
1602142865.97 | NtOpenKey |
| Status SUCCESS | |
1602142865.97 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142865.97 | NtClose |
| Status SUCCESS | |
1602142865.97 | LdrLoadDll |
| Status SUCCESS | |
1602142865.97 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 5076 | 4992 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142865.99 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142865.99 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142865.99 | NtOpenThread |
| Status SUCCESS | |
1602142865.99 | LdrGetDllHandle |
| Status SUCCESS | |
1602142865.99 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142865.99 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142865.99 | RegOpenKeyExW |
| Status SUCCESS | |
1602142865.99 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142865.99 | RegQueryValueExW |
| Status SUCCESS | |
1602142865.99 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 1976 | 4992 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142866.24 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142866.24 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142866.24 | LdrLoadDll |
| Status SUCCESS | |
1602142866.24 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142866.24 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142866.24 | NtCreateFile |
| Status SUCCESS | |
1602142866.24 | NtCreateSection |
| Status SUCCESS | |
1602142866.24 | NtMapViewOfSection |
| Status SUCCESS | |
1602142866.25 | 2 | NtClose |
| Status SUCCESS |
1602142866.25 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 3660 | 4992 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142866.3 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142866.3 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142866.3 | LdrLoadDll |
| Status SUCCESS | |
1602142866.3 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142866.3 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142866.3 | NtCreateFile |
| Status SUCCESS | |
1602142866.3 | NtCreateSection |
| Status SUCCESS | |
1602142866.3 | NtMapViewOfSection |
| Status SUCCESS | |
1602142866.3 | 2 | NtClose |
| Status SUCCESS |
1602142866.3 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4580 | 5076 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142866.41 | NtOpenFile |
| Status SUCCESS | |
1602142866.41 | NtQueryInformationFile |
| Status SUCCESS | |
1602142866.41 | NtClose |
| Status SUCCESS | |
1602142866.41 | 17 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142866.43 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142866.43 | GetSystemInfo |
| Status SUCCESS | |
1602142866.43 | NtOpenKey |
| Status SUCCESS | |
1602142866.43 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142866.43 | NtQueryValueKey |
| Status SUCCESS | |
1602142866.43 | NtClose |
| Status SUCCESS |
reg.exe | 1928 | 4992 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142866.47 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142866.47 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142866.47 | LdrLoadDll |
| Status SUCCESS | |
1602142866.47 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142866.47 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142866.47 | NtCreateFile |
| Status SUCCESS | |
1602142866.47 | NtCreateSection |
| Status SUCCESS | |
1602142866.47 | NtMapViewOfSection |
| Status SUCCESS | |
1602142866.47 | 2 | NtClose |
| Status SUCCESS |
1602142866.47 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 4716 | 4992 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142866.43 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142866.43 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142866.43 | NtOpenThread |
| Status SUCCESS | |
1602142866.43 | LdrGetDllHandle |
| Status SUCCESS | |
1602142866.43 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142866.44 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142866.44 | RegOpenKeyExW |
| Status SUCCESS | |
1602142866.44 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142866.44 | RegQueryValueExW |
| Status SUCCESS | |
1602142866.44 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4936 | 4716 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142866.64 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142866.64 | NtClose |
| Status SUCCESS | |
1602142866.64 | NtOpenKey |
| Status SUCCESS | |
1602142866.64 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142866.64 | NtClose |
| Status SUCCESS | |
1602142866.64 | NtOpenKey |
| Status SUCCESS | |
1602142866.64 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142866.64 | NtClose |
| Status SUCCESS | |
1602142866.64 | LdrLoadDll |
| Status SUCCESS | |
1602142866.64 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4164 | 4580 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142866.96 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142866.96 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142866.96 | NtOpenThread |
| Status SUCCESS | |
1602142866.96 | LdrGetDllHandle |
| Status SUCCESS | |
1602142866.96 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142866.96 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142866.96 | RegOpenKeyExW |
| Status SUCCESS | |
1602142866.96 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142866.96 | RegQueryValueExW |
| Status SUCCESS | |
1602142866.96 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4480 | 4580 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142867.08 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142867.08 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142867.08 | LdrLoadDll |
| Status SUCCESS | |
1602142867.08 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142867.08 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142867.08 | NtCreateFile |
| Status SUCCESS | |
1602142867.08 | NtCreateSection |
| Status SUCCESS | |
1602142867.08 | NtMapViewOfSection |
| Status SUCCESS | |
1602142867.08 | 2 | NtClose |
| Status SUCCESS |
1602142867.08 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 2196 | 4580 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142867.17 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142867.17 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142867.17 | LdrLoadDll |
| Status SUCCESS | |
1602142867.17 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142867.17 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142867.17 | NtCreateFile |
| Status SUCCESS | |
1602142867.17 | NtCreateSection |
| Status SUCCESS | |
1602142867.17 | NtMapViewOfSection |
| Status SUCCESS | |
1602142867.17 | 2 | NtClose |
| Status SUCCESS |
1602142867.17 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4108 | 4580 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142867.69 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142867.69 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142867.69 | LdrLoadDll |
| Status SUCCESS | |
1602142867.69 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142867.69 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142867.69 | NtCreateFile |
| Status SUCCESS | |
1602142867.69 | NtCreateSection |
| Status SUCCESS | |
1602142867.69 | NtMapViewOfSection |
| Status SUCCESS | |
1602142867.69 | 2 | NtClose |
| Status SUCCESS |
1602142867.69 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 4812 | 4164 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142867.41 | NtOpenFile |
| Status SUCCESS | |
1602142867.41 | NtQueryInformationFile |
| Status SUCCESS | |
1602142867.41 | NtClose |
| Status SUCCESS | |
1602142867.41 | 11 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142867.42 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142867.42 | GetSystemInfo |
| Status SUCCESS | |
1602142867.42 | NtOpenKey |
| Status SUCCESS | |
1602142867.42 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142867.42 | NtQueryValueKey |
| Status SUCCESS | |
1602142867.42 | NtClose |
| Status SUCCESS |
cmd.exe | 4456 | 4580 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142867.77 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142867.77 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142867.77 | NtOpenThread |
| Status SUCCESS | |
1602142867.77 | LdrGetDllHandle |
| Status SUCCESS | |
1602142867.77 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142867.77 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142867.77 | RegOpenKeyExW |
| Status SUCCESS | |
1602142867.77 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142867.77 | RegQueryValueExW |
| Status SUCCESS | |
1602142867.77 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 4200 | 4456 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142868.0 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142868.0 | NtClose |
| Status SUCCESS | |
1602142868.0 | NtOpenKey |
| Status SUCCESS | |
1602142868.0 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142868.0 | NtClose |
| Status SUCCESS | |
1602142868.0 | NtOpenKey |
| Status SUCCESS | |
1602142868.0 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142868.0 | NtClose |
| Status SUCCESS | |
1602142868.0 | LdrLoadDll |
| Status SUCCESS | |
1602142868.0 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 4864 | 4812 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142868.02 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142868.03 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142868.03 | NtOpenThread |
| Status SUCCESS | |
1602142868.03 | LdrGetDllHandle |
| Status SUCCESS | |
1602142868.03 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142868.03 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142868.03 | RegOpenKeyExW |
| Status SUCCESS | |
1602142868.03 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142868.03 | RegQueryValueExW |
| Status SUCCESS | |
1602142868.03 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 4288 | 4812 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142868.17 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142868.17 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142868.17 | LdrLoadDll |
| Status SUCCESS | |
1602142868.17 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142868.17 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142868.17 | NtCreateFile |
| Status SUCCESS | |
1602142868.17 | NtCreateSection |
| Status SUCCESS | |
1602142868.19 | NtMapViewOfSection |
| Status SUCCESS | |
1602142868.19 | 2 | NtClose |
| Status SUCCESS |
1602142868.19 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 5152 | 4864 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142868.48 | NtOpenFile |
| Status SUCCESS | |
1602142868.48 | NtQueryInformationFile |
| Status SUCCESS | |
1602142868.48 | NtClose |
| Status SUCCESS | |
1602142868.5 | 22 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142868.5 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142868.5 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142868.5 | LdrLoadDll |
| Status SUCCESS | |
1602142868.5 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142868.5 | NtOpenKey |
| Status SUCCESS | |
1602142868.5 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 4264 | 4812 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142868.34 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142868.34 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142868.34 | LdrLoadDll |
| Status SUCCESS | |
1602142868.34 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142868.34 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142868.34 | NtCreateFile |
| Status SUCCESS | |
1602142868.34 | NtCreateSection |
| Status SUCCESS | |
1602142868.34 | NtMapViewOfSection |
| Status SUCCESS | |
1602142868.34 | 2 | NtClose |
| Status SUCCESS |
1602142868.34 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 4720 | 4812 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142868.38 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142868.38 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142868.38 | LdrLoadDll |
| Status SUCCESS | |
1602142868.38 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142868.38 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142868.38 | NtCreateFile |
| Status SUCCESS | |
1602142868.38 | NtCreateSection |
| Status SUCCESS | |
1602142868.38 | NtMapViewOfSection |
| Status SUCCESS | |
1602142868.38 | 2 | NtClose |
| Status SUCCESS |
1602142868.38 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 5228 | 4812 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142868.39 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142868.39 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142868.39 | NtOpenThread |
| Status SUCCESS | |
1602142868.39 | LdrGetDllHandle |
| Status SUCCESS | |
1602142868.39 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142868.39 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142868.39 | RegOpenKeyExW |
| Status SUCCESS | |
1602142868.39 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142868.39 | RegQueryValueExW |
| Status SUCCESS | |
1602142868.39 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 5324 | 5228 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142868.69 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142868.69 | NtClose |
| Status SUCCESS | |
1602142868.69 | NtOpenKey |
| Status SUCCESS | |
1602142868.69 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142868.69 | NtClose |
| Status SUCCESS | |
1602142868.69 | NtOpenKey |
| Status SUCCESS | |
1602142868.69 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142868.69 | NtClose |
| Status SUCCESS | |
1602142868.69 | LdrLoadDll |
| Status SUCCESS | |
1602142868.69 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 5388 | 5152 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142869.39 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142869.39 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142869.39 | NtOpenThread |
| Status SUCCESS | |
1602142869.39 | LdrGetDllHandle |
| Status SUCCESS | |
1602142869.39 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142869.39 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142869.39 | RegOpenKeyExW |
| Status SUCCESS | |
1602142869.39 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142869.39 | RegQueryValueExW |
| Status SUCCESS | |
1602142869.39 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 5440 | 5152 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142869.61 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142869.61 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142869.61 | LdrLoadDll |
| Status SUCCESS | |
1602142869.61 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142869.61 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142869.61 | NtCreateFile |
| Status SUCCESS | |
1602142869.61 | NtCreateSection |
| Status SUCCESS | |
1602142869.61 | NtMapViewOfSection |
| Status SUCCESS | |
1602142869.61 | 2 | NtClose |
| Status SUCCESS |
1602142869.61 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 5480 | 5152 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142869.64 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142869.64 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142869.65 | LdrLoadDll |
| Status SUCCESS | |
1602142869.65 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142869.65 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142869.65 | NtCreateFile |
| Status SUCCESS | |
1602142869.65 | NtCreateSection |
| Status SUCCESS | |
1602142869.65 | NtMapViewOfSection |
| Status SUCCESS | |
1602142869.65 | 2 | NtClose |
| Status SUCCESS |
1602142869.65 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 5572 | 5152 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142869.69 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142869.69 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142869.69 | LdrLoadDll |
| Status SUCCESS | |
1602142869.69 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142869.69 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142869.69 | NtCreateFile |
| Status SUCCESS | |
1602142869.69 | NtCreateSection |
| Status SUCCESS | |
1602142869.69 | NtMapViewOfSection |
| Status SUCCESS | |
1602142869.69 | 2 | NtClose |
| Status SUCCESS |
1602142869.69 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 5628 | 5152 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142869.7 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142869.7 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142869.7 | NtOpenThread |
| Status SUCCESS | |
1602142869.7 | LdrGetDllHandle |
| Status SUCCESS | |
1602142869.7 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142869.7 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142869.7 | RegOpenKeyExW |
| Status SUCCESS | |
1602142869.7 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142869.7 | RegQueryValueExW |
| Status SUCCESS | |
1602142869.7 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 5508 | 5388 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142869.86 | NtOpenFile |
| Status SUCCESS | |
1602142869.86 | NtQueryInformationFile |
| Status SUCCESS | |
1602142869.86 | NtClose |
| Status SUCCESS | |
1602142869.86 | 51 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142869.86 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142869.86 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142869.86 | LdrLoadDll |
| Status SUCCESS | |
1602142869.86 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142869.87 | NtOpenKey |
| Status SUCCESS | |
1602142869.87 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
cscript.exe | 5720 | 5628 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142869.92 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142869.92 | NtClose |
| Status SUCCESS | |
1602142869.92 | NtOpenKey |
| Status SUCCESS | |
1602142869.92 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142869.92 | NtClose |
| Status SUCCESS | |
1602142869.92 | NtOpenKey |
| Status SUCCESS | |
1602142869.92 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142869.92 | NtClose |
| Status SUCCESS | |
1602142869.92 | LdrLoadDll |
| Status SUCCESS | |
1602142869.92 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 5788 | 5508 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142870.29 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142870.29 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142870.29 | NtOpenThread |
| Status SUCCESS | |
1602142870.29 | LdrGetDllHandle |
| Status SUCCESS | |
1602142870.29 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142870.29 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142870.29 | RegOpenKeyExW |
| Status SUCCESS | |
1602142870.29 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142870.29 | RegQueryValueExW |
| Status SUCCESS | |
1602142870.29 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 5840 | 5508 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142870.81 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142870.81 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142870.81 | LdrLoadDll |
| Status SUCCESS | |
1602142870.81 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142870.81 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142870.81 | NtCreateFile |
| Status SUCCESS | |
1602142870.81 | NtCreateSection |
| Status SUCCESS | |
1602142870.81 | NtMapViewOfSection |
| Status SUCCESS | |
1602142870.81 | 2 | NtClose |
| Status SUCCESS |
1602142870.81 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 5924 | 5788 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142870.95 | NtOpenFile |
| Status SUCCESS | |
1602142870.96 | NtQueryInformationFile |
| Status SUCCESS | |
1602142870.96 | NtClose |
| Status SUCCESS | |
1602142870.96 | 25 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142870.96 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142870.96 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142870.96 | LdrLoadDll |
| Status SUCCESS | |
1602142870.96 | 3 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142870.96 | NtOpenKey |
| Status SUCCESS | |
1602142870.96 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 5880 | 5508 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142871.03 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142871.03 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142871.03 | LdrLoadDll |
| Status SUCCESS | |
1602142871.03 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142871.03 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142871.03 | NtCreateFile |
| Status SUCCESS | |
1602142871.03 | NtCreateSection |
| Status SUCCESS | |
1602142871.03 | NtMapViewOfSection |
| Status SUCCESS | |
1602142871.03 | 2 | NtClose |
| Status SUCCESS |
1602142871.03 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 5968 | 5508 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142871.11 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142871.11 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142871.11 | LdrLoadDll |
| Status SUCCESS | |
1602142871.11 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142871.11 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142871.11 | NtCreateFile |
| Status SUCCESS | |
1602142871.11 | NtCreateSection |
| Status SUCCESS | |
1602142871.11 | NtMapViewOfSection |
| Status SUCCESS | |
1602142871.11 | 2 | NtClose |
| Status SUCCESS |
1602142871.11 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 6040 | 5508 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142871.18 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142871.18 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142871.18 | NtOpenThread |
| Status SUCCESS | |
1602142871.18 | LdrGetDllHandle |
| Status SUCCESS | |
1602142871.18 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142871.18 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142871.18 | RegOpenKeyExW |
| Status SUCCESS | |
1602142871.18 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142871.18 | RegQueryValueExW |
| Status SUCCESS | |
1602142871.18 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cscript.exe | 6124 | 6040 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142871.81 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142871.81 | NtClose |
| Status SUCCESS | |
1602142871.81 | NtOpenKey |
| Status SUCCESS | |
1602142871.81 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142871.81 | NtClose |
| Status SUCCESS | |
1602142871.81 | NtOpenKey |
| Status SUCCESS | |
1602142871.81 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142871.81 | NtClose |
| Status SUCCESS | |
1602142871.81 | LdrLoadDll |
| Status SUCCESS | |
1602142871.81 | LdrGetProcedureAddress |
| Status SUCCESS |
cmd.exe | 5128 | 5924 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142872.76 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142872.76 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142872.76 | NtOpenThread |
| Status SUCCESS | |
1602142872.76 | LdrGetDllHandle |
| Status SUCCESS | |
1602142872.76 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142872.76 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142872.76 | RegOpenKeyExW |
| Status SUCCESS | |
1602142872.76 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142872.76 | RegQueryValueExW |
| Status SUCCESS | |
1602142872.76 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
reg.exe | 5192 | 5924 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142874.05 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142874.05 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142874.05 | LdrLoadDll |
| Status SUCCESS | |
1602142874.05 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142874.05 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142874.05 | NtCreateFile |
| Status SUCCESS | |
1602142874.05 | NtCreateSection |
| Status SUCCESS | |
1602142874.05 | NtMapViewOfSection |
| Status SUCCESS | |
1602142874.05 | 2 | NtClose |
| Status SUCCESS |
1602142874.05 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 5136 | 5128 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142874.9 | NtOpenFile |
| Status SUCCESS | |
1602142874.9 | NtQueryInformationFile |
| Status SUCCESS | |
1602142874.9 | NtClose |
| Status SUCCESS | |
1602142874.9 | 52 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142874.91 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142874.91 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142874.91 | LdrLoadDll |
| Status SUCCESS | |
1602142874.91 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142874.91 | NtOpenKey |
| Status SUCCESS | |
1602142874.91 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
reg.exe | 4112 | 5924 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142875.82 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142875.82 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142875.82 | LdrLoadDll |
| Status SUCCESS | |
1602142875.82 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142875.82 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142875.82 | NtCreateFile |
| Status SUCCESS | |
1602142875.82 | NtCreateSection |
| Status SUCCESS | |
1602142875.82 | NtMapViewOfSection |
| Status SUCCESS | |
1602142875.82 | 2 | NtClose |
| Status SUCCESS |
1602142875.82 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 5308 | 5924 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142877.14 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142877.14 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142877.14 | LdrLoadDll |
| Status SUCCESS | |
1602142877.14 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142877.14 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142877.14 | NtCreateFile |
| Status SUCCESS | |
1602142877.14 | NtCreateSection |
| Status SUCCESS | |
1602142877.14 | NtMapViewOfSection |
| Status SUCCESS | |
1602142877.16 | 2 | NtClose |
| Status SUCCESS |
1602142877.16 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
cmd.exe | 5408 | 5136 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142877.47 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142877.47 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142877.47 | NtOpenThread |
| Status SUCCESS | |
1602142877.49 | LdrGetDllHandle |
| Status SUCCESS | |
1602142877.49 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142877.49 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142877.49 | RegOpenKeyExW |
| Status SUCCESS | |
1602142877.49 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142877.49 | RegQueryValueExW |
| Status SUCCESS | |
1602142877.49 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
cmd.exe | 5452 | 5924 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142877.86 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142877.88 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142877.88 | NtOpenThread |
| Status SUCCESS | |
1602142877.88 | LdrGetDllHandle |
| Status SUCCESS | |
1602142877.88 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142877.88 | RegOpenKeyExW |
| Return Value 2 Status FAILURE | |
1602142877.88 | RegOpenKeyExW |
| Status SUCCESS | |
1602142877.88 | RegQueryValueExW |
| Return Value 2 Status FAILURE | |
1602142877.88 | RegQueryValueExW |
| Status SUCCESS | |
1602142877.88 | RegQueryValueExW |
| Return Value 2 Status FAILURE |
d79e4c4ceb3abc8a51a01eff14a51694d7c25f9306ee71a922a01fddb48a15fe.exe | 5668 | 5408 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142882.18 | NtOpenFile |
| Status SUCCESS | |
1602142882.18 | NtQueryInformationFile |
| Status SUCCESS | |
1602142882.18 | NtClose |
| Status SUCCESS | |
1602142882.18 | 46 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142882.2 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142882.2 | 2 | GetSystemInfo |
| Status SUCCESS |
1602142882.2 | LdrLoadDll |
| Status SUCCESS | |
1602142882.2 | LdrGetProcedureAddress |
| Status SUCCESS | |
1602142882.21 | NtOpenKey |
| Status SUCCESS | |
1602142882.21 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE |
cscript.exe | 5664 | 5452 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142882.26 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142882.26 | NtClose |
| Status SUCCESS | |
1602142882.26 | NtOpenKey |
| Status SUCCESS | |
1602142882.26 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142882.26 | NtClose |
| Status SUCCESS | |
1602142882.26 | NtOpenKey |
| Status SUCCESS | |
1602142882.26 | NtQueryValueKey |
| Return Value 3221225524 Status FAILURE | |
1602142882.26 | NtClose |
| Status SUCCESS | |
1602142882.26 | LdrLoadDll |
| Status SUCCESS | |
1602142882.26 | LdrGetProcedureAddress |
| Status SUCCESS |
reg.exe | 5596 | 5136 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142882.52 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142882.52 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142882.52 | LdrLoadDll |
| Status SUCCESS | |
1602142882.52 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142882.52 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142882.56 | NtCreateFile |
| Status SUCCESS | |
1602142882.56 | NtCreateSection |
| Status SUCCESS | |
1602142882.56 | NtMapViewOfSection |
| Status SUCCESS | |
1602142882.57 | 2 | NtClose |
| Status SUCCESS |
1602142882.57 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |
reg.exe | 5732 | 5136 |
Time | Repeat | API | Arguments | Result |
---|
Time | Repeat | API | Arguments | Result |
---|---|---|---|---|
1602142882.98 | GetSystemTimeAsFileTime | Status SUCCESS | ||
1602142882.98 | SetUnhandledExceptionFilter | Status FAILURE | ||
1602142882.98 | LdrLoadDll |
| Status SUCCESS | |
1602142882.98 | 2 | LdrGetProcedureAddress |
| Status SUCCESS |
1602142882.98 | GetSystemWindowsDirectoryW |
| Return Value 10 Status SUCCESS | |
1602142882.98 | NtCreateFile |
| Status SUCCESS | |
1602142882.98 | NtCreateSection |
| Status SUCCESS | |
1602142882.98 | NtMapViewOfSection |
| Status SUCCESS | |
1602142882.98 | 2 | NtClose |
| Status SUCCESS |
1602142882.98 | RegOpenKeyExW |
| Return Value 2 Status FAILURE |