C:\Users\alex\Desktop\svchosx.exe | 访问内存 | C:\Windows\System32\cmd.exe |
2018-03-18 23:14:06 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Windows\Fonts\system\csrss.exe |
2018-03-18 23:13:59 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Windows\SysWOW64\cacls.exe |
2018-03-18 23:13:53 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Windows\SysWOW64\cacls.exe |
2018-03-18 23:13:44 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Windows\SysWOW64\schtasks.exe |
2018-03-18 23:13:25 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Windows\Fonts\system\csrss.exe |
2018-03-18 23:13:19 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\AppData\Local\Temp\Devicenoodles.sys |
2018-03-18 23:13:13 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKUS\360SandBox\S\Registry\Machine\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Run\WindowsApache |
2018-03-18 23:13:08 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Users\alex\AppData\Local\Temp\HipsTray.exe |
2018-03-18 23:12:45 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\AppData\Local\Temp\HipsTray.exe |
2018-03-18 23:12:19 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:12:19 | C:\Users\alex\Desktop\svchosx.exe | 访问COM接口 | C:\Windows\System32\svchost.exe |
2018-03-18 23:12:14 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:12:11 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:12:11 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKUS\360SandBox\S\Registry\USER\S-1-5-21-4035797329-1013324386-3877975614-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings |
2018-03-18 23:12:09 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:12:06 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\DRSrvices |
2018-03-18 23:12:02 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKUS\360SandBox\S\Registry\USER\S-1-5-21-4035797329-1013324386-3877975614-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable |
2018-03-18 23:12:02 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:12:02 | C:\Users\alex\Desktop\svchosx.exe | DNS/RPC客户端访问 | |
2018-03-18 23:12:00 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:11:59 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:11:57 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKUS\360SandBox\S\Registry\USER\S-1-5-21-4035797329-1013324386-3877975614-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable |
2018-03-18 23:11:55 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:11:52 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\AppData\Roaming\winlogon.exe |
2018-03-18 23:11:50 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKUS\360SandBox\S\Registry\USER\S-1-5-21-4035797329-1013324386-3877975614-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\Connections\SavedLegacySettings |
2018-03-18 23:11:48 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\DRSrvices |
2018-03-18 23:11:42 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:11:39 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:11:37 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKUS\360SandBox\S\Registry\USER\S-1-5-21-4035797329-1013324386-3877975614-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer |
2018-03-18 23:11:33 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\AppData\Roaming\winlogon.exe |
2018-03-18 23:11:31 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\DRSrvices |
2018-03-18 23:11:26 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKUS\360SandBox\S\Registry\USER\S-1-5-21-4035797329-1013324386-3877975614-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyEnable |
2018-03-18 23:11:23 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:11:13 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\AppData\Roaming\winlogon.exe |
2018-03-18 23:11:06 | C:\Users\alex\Desktop\svchosx.exe | 修改注册表项 | HKLM\SYSTEM\ControlSet???\Services\DRSrvices |
2018-03-18 23:10:58 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Users\alex\Desktop\svchosx.exe |
2018-03-18 23:10:44 | C:\Users\alex\Desktop\svchosx.exe | 修改文件 | C:\360SANDBOX\SHADOW\Users\alex\AppData\Roaming\winlogon.exe |
2018-03-18 23:10:36 | C:\Users\alex\Desktop\svchosx.exe | 创建进程 | C:\Users\alex\Desktop\svchosx.exe |