Date/Time | Application | Action | Target |
2009-1-8 11:51:25 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKUS\S-1-5-21-839522115-706699826-2147053123-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache |
2009-1-8 11:51:27 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\Directory |
2009-1-8 11:51:29 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1\CacheLimit |
2009-1-8 11:51:31 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify File | C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\index.dat |
2009-1-8 11:51:33 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1\CacheLimit |
2009-1-8 11:51:35 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\Directory |
2009-1-8 11:51:37 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify File | C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat |
2009-1-8 11:51:38 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify File | C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\index.dat |
2009-1-8 11:51:41 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Access COM Interface | \RPC Control\ntsvcs |
2009-1-8 11:51:43 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\Directory |
2009-1-8 11:51:45 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify File | C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat |
2009-1-8 11:51:48 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify File | \Device\NamedPipe\lsarpc |
2009-1-8 11:51:49 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKUS\S-1-5-21-839522115-706699826-2147053123-1003\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\AppData |
2009-1-8 11:51:51 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKUS\S-1-5-21-839522115-706699826-2147053123-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ProxyServer |
2009-1-8 11:51:53 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKLM\SYSTEM\ControlSet001\Hardware Profiles\0001\Software\Microsoft\windows\CurrentVersion\Internet Settings\ProxyEnable |
2009-1-8 11:51:55 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKUS\S-1-5-21-839522115-706699826-2147053123-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass |
2009-1-8 11:51:57 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKUS\S-1-5-21-839522115-706699826-2147053123-1003\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProxyBypass |
2009-1-8 11:51:59 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\Directory |
2009-1-8 11:52:03 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify File | C:\Documents and Settings\Owner\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat |
2009-1-8 11:52:05 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\Directory |
2009-1-8 11:52:07 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify Key | HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\Cache\Paths\path1\CacheLimit |
2009-1-8 11:52:08 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify File | C:\Documents and Settings\Owner\Local Settings\Temporary Internet Files\Content.IE5\index.dat |
2009-1-8 11:52:10 | C:\Documents and Settings\Owner\桌面\test\样本.exe | DNS/RPC Client Access | \RPC Control\DNSResolver |
2009-1-8 11:52:12 | C:\Documents and Settings\Owner\桌面\test\样本.exe | Modify File | \Device\WMIDataDevice |