Action | Path | Val_Name | Val_Data | Mod_Val_Data |
---|
modified | HKLM/SOFTWARE/Microsoft/Cryptography/RNG | Seed | 3D E1 C3 E7 4C 72 75 5E 5D C3 7E A5 F7 78 8E 2C 45 27 F8 D5 EC C2 A0 99 23 9D DA | 47 44 79 FD DC 7C 3B E0 E8 21 8E 7E E5 75 11 A6 01 6D 57 24 50 9D DD E4 D5 63 9 |
modified | HKLM/SOFTWARE/Microsoft/Security Center | AntiVirusOverride | 0x00000000 | 0x00000001 |
modified | HKLM/SOFTWARE/Microsoft/Security Center | FirewallOverride | 0x00000000 | 0x00000001 |
modified | HKLM/SYSTEM/ControlSet001/Services/SharedAccess | Start | 0x00000002 | 0x00000004 |
modified | HKLM/SYSTEM/CurrentControlSet/Services/SharedAccess | Start | 0x00000002 | 0x00000004 |
modified | HKU/.DEFAULT/Software/Microsoft/Windows/CurrentVersion/Explorer/Shell Folders | Cookies | C:Documents and SettingsDefault UserCookies | "C |
modified | HKU/.DEFAULT/Software/Microsoft/Windows/CurrentVersion/Explorer/Shell Folders | Cache | C:Documents and SettingsDefault UserLocal SettingsTemporary Internet Files | "C |
modified | HKU/.DEFAULT/Software/Microsoft/Windows/CurrentVersion/Explorer/Shell Folders | History | C:Documents and SettingsDefault UserLocal SettingsHistory | "C |
modified | HKU/S-1-5-21-1844237615-562591055-839522115-1004/Software/Microsoft/Windows/CurrentVersion/Internet Settings/Connections | SavedLegacySettings | 3C 00 00 00 15 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 00 | 3C 00 00 00 16 00 00 00 01 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 04 00 0 |
modified | HKU/S-1-5-21-1844237615-562591055-839522115-1004/SessionInformation | ProgramCount | 0x00000002 | 0x00000001 |
modified | HKU/S-1-5-18/Software/Microsoft/Windows/CurrentVersion/Explorer/Shell Folders | Cookies | C:Documents and SettingsDefault UserCookies | "C |
modified | HKU/S-1-5-18/Software/Microsoft/Windows/CurrentVersion/Explorer/Shell Folders | Cache | C:Documents and SettingsDefault UserLocal SettingsTemporary Internet Files | "C |
modified | HKU/S-1-5-18/Software/Microsoft/Windows/CurrentVersion/Explorer/Shell Folders | History | C:Documents and SettingsDefault UserLocal SettingsHistory | "C |
DNS | DNS Response |
---|
mx1.hotmail.com | Standard query response A 65.55.92.184 A 65.54.188.72 A 65.54.188.94 A 65.54.188.110 A 65.54.188.126 A 65.55.37.72 A 65.55.37.88 A 65.55.37.104 A 65.55.37.120 A 65.55.92.136 A 65.55.92.152 A 65.55.92.168 |
mailin-03.mx.aol.com | Standard query response A 64.12.90.33 A 64.12.90.97 A 205.188.59.193 A 205.188.156.193 A 205.188.190.2 |
proxim.ircgalaxy.pl | Standard query response A 94.63.149.150 |
ftp.scarlet.be | Standard query response A 193.74.22.160 |
yutunrz.1dumb.com | Standard query response A 127.0.0.1 |
mailin-01.mx.aol.com | Standard query response A 205.188.159.42 A 64.12.90.1 A 64.12.90.98 A 205.188.59.194 A 205.188.146.193 |
mcduii.3-a.net | Standard query response A 127.0.0.1 |
jdjsloy.dynserv.com | Standard query response, No such name |
wyqggvow.afraid.org | Standard query response A 127.0.0.2 |
nttstziinpa.hn.org | Standard query response A 127.0.0.1 |
fcnhysydw.yi.org | Standard query response A 143.215.15.60 |
dlivmg.1dumb.com | Standard query response A 64.158.56.57 A 63.251.179.57 |
neytteybbo.3-a.net | Standard query response A 64.158.56.57 A 63.251.179.57 |
fzzdik.dynserv.com | Standard query response, No such name |
pkvgzaecagx.afraid.org | Standard query response, No such name |
yraqztt.hn.org | Standard query response A 127.0.0.1 |
kpxvrvdefs.yi.org | Standard query response A 143.215.15.60 |
qeqfsvxousx.1dumb.com | Standard query response A 63.251.179.57 A 64.158.56.57 |
imtoey.3-a.net | Standard query response A 63.251.179.57 A 64.158.56.57 |
jrscqsshxs.dynserv.com | Standard query response, No such name |
yjjtuvsro.afraid.org | Standard query response, No such name |
firradbqzku.hn.org | Standard query response A 127.0.0.1 |
dgwigom.yi.org | Standard query response A 143.215.15.60 |
mfltoqgqt.1dumb.com | Standard query response A 64.158.56.57 A 63.251.179.57 |
ksfvgfrf.3-a.net | Standard query response A 64.158.56.57 A 63.251.179.57 |
uhqoyjlu.dynserv.com | Standard query response, No such name |
bdtjkffl.afraid.org | Standard query response, No such name |
ipurfbqpsdj.hn.org | Standard query response A 127.0.0.1 |
orugtuapnzu.yi.org | Standard query response A 143.215.15.60 |
gyssafafiq.1dumb.com | Standard query response A 63.251.179.57 A 64.158.56.57 |
ihhyzby.3-a.net | Standard query response A 63.251.179.57 A 64.158.56.57 |
pvxkideqlen.dynserv.com | Standard query response, No such name |
bhlnklify.afraid.org | Standard query response, No such name |
tsyunetwmi.hn.org | Standard query response A 127.0.0.1 |
exrjbk.yi.org | Standard query response A 143.215.15.60 |
fndvrix.1dumb.com | Standard query response A 64.158.56.57 A 63.251.179.57 |
ryhszzinxss.3-a.net | Standard query response A 64.158.56.57 A 63.251.179.57 |
ooyvsk.dynserv.com | Standard query response, No such name |
qujuvukbvbq.afraid.org | Standard query response, No such name |
ichyig.hn.org | Standard query response A 127.0.0.1 |
gtyeywobh.yi.org | Standard query response A 143.215.15.60 |
vfpqyv.1dumb.com | Standard query response A 63.251.179.57 A 64.158.56.57 |
cnntzas.3-a.net | Standard query response A 63.251.179.57 A 64.158.56.57 |
lslpcl.dynserv.com | Standard query response, No such name |
qqycilcd.afraid.org | Standard query response, No such name |
aflnxlpko.hn.org | Standard query response A 127.0.0.1 |
yeaigapqs.yi.org | Standard query response A 143.215.15.60 |
eivysjix.1dumb.com | Standard query response A 64.158.56.57 A 63.251.179.57 |
aazuxmmqqkq.3-a.net | Standard query response A 64.158.56.57 A 63.251.179.57 |
rzstdrbnzs.dynserv.com | Standard query response, No such name |
jqevnl.afraid.org | Standard query response, No such name |
yrztpzjou.hn.org | Standard query response A 127.0.0.1 |
rdjqleu.yi.org | Standard query response A 143.215.15.60 |
yldgjpojof.1dumb.com | Standard query response A 63.251.179.57 A 64.158.56.57 |
qjdvlkr.3-a.net | Standard query response A 63.251.179.57 A 64.158.56.57 |
yxnhwhmrckk.dynserv.com | Standard query response, No such name |
idgucupep.afraid.org | Standard query response, No such name |
dkpkkvkvdzm.hn.org | Standard query response A 127.0.0.1 |
lvzxlhmjfje.yi.org | Standard query response, No such name |
sfowpix.1dumb.com | Standard query response A 63.251.179.57 A 64.158.56.57 |
fuyofzgrbdj.3-a.net | Standard query response A 63.251.179.57 A 64.158.56.57 |
rjzjxmnvxcu.dynserv.com | Standard query response, No such name |
njpwrj.afraid.org | Standard query response, No such name |
kkqsox.hn.org | Standard query response A 127.0.0.1 |
wrompw.yi.org | Standard query response A 143.215.15.60 |
tnwuaqh.1dumb.com | Standard query response A 64.158.56.57 A 63.251.179.57 |
xypvxdnurje.3-a.net | Standard query response A 64.158.56.57 A 63.251.179.57 |
ajfgffpjh.dynserv.com | Standard query response, No such name |
bxffhm.afraid.org | Standard query response, No such name |
opdyes.hn.org | Standard query response A 127.0.0.1 |
ddujmhzyhlg.yi.org | Standard query response, No such name |
wovygce.1dumb.com | Standard query response A 64.158.56.57 A 63.251.179.57 |
druuvb.3-a.net | Standard query response A 64.158.56.57 A 63.251.179.57 |
yleamly.dynserv.com | Standard query response, No such name |
cludphxadw.afraid.org | Standard query response, No such name |
xeulvjqoyup.hn.org | Standard query response A 127.0.0.1 |
uvotww.yi.org | Standard query response, No such name |
utnmaalui.1dumb.com | Standard query response A 64.158.56.57 A 63.251.179.57 |
gzyaymegja.3-a.net | Standard query response A 64.158.56.57 A 63.251.179.57 |
rapirpixlwo.dynserv.com | Standard query response, No such name |
ivrzxfebv.afraid.org | Standard query response, No such name |
xmutobdw.hn.org | Standard query response A 127.0.0.1 |
oawdzeux.yi.org | Standard query response, No such name |
ywrepa.1dumb.com | Standard query response A 64.158.56.57 A 63.251.179.57 |
dvblqvgnmgg.3-a.net | Standard query response A 64.158.56.57 A 63.251.179.57 |
vmwovxidv.dynserv.com | Standard query response, No such name |
likhmmkgo.afraid.org | Standard query response, No such name |
hbotqdnejfx.hn.org | Standard query response A 127.0.0.1 |
mzlbom.yi.org | Standard query response, No such name |
kzpshxi.1dumb.com | Standard query response A 63.251.179.57 A 64.158.56.57 |
ckmknwzcmn.3-a.net | Standard query response A 63.251.179.57 A 64.158.56.57 |
pomwfvizn.dynserv.com | Standard query response, No such name |
goswkcozwpb.afraid.org | Standard query response, No such name |
vubwaxcjy.hn.org | Standard query response A 127.0.0.1 |
bkqlwznbxa.yi.org | Standard query response, No such name |
qiilumf.1dumb.com | Standard query response A 63.251.179.57 A 64.158.56.57 |
xictoed.3-a.net | Standard query response A 63.251.179.57 A 64.158.56.57 |
qmdcva.dynserv.com | Standard query response, No such name |
nmgpoqqiwmh.afraid.org | Standard query response A 127.0.0.2 |