Action Time
| Description
| Filename
| Full Path
| More Information
| File Extension
|
20/05/2017 17:33:21 | User Logon | | | TUBERCULOLAB\antonio |
|
20/05/2017 17:02:57 | System Started | | | |
|
20/05/2017 15:10:11 | System Shutdown | | | |
|
20/05/2017 14:10:05 | System Started | | | |
|
20/05/2017 14:08:08 | System Shutdown | | | |
|
20/05/2017 14:07:22 | System Started | | | |
|
20/05/2017 13:51:57 | System Shutdown | | | |
|
20/05/2017 13:51:57 | User Logoff | | | RABANOSRV\antonio |
|
20/05/2017 13:06:00 | Open file or folder | Windows_Live_Response | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response | |
|
20/05/2017 13:06:00 | Open file or folder | forecopy_handy.log | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\forecopy_handy.log | | log
|
20/05/2017 13:05:33 | Open file or folder | README-Windows.txt | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\README-Windows.txt | | txt
|
20/05/2017 13:05:09 | View Folder in Explorer | UserInfo | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\RABANOSRV_20170520_130258\LiveResponseData\UserInfo | |
|
20/05/2017 13:05:09 | View Folder in Explorer | LiveResponseData | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\RABANOSRV_20170520_130258\LiveResponseData | |
|
20/05/2017 13:05:07 | View Folder in Explorer | PersistenceMechanisms | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\RABANOSRV_20170520_130258\LiveResponseData\PersistenceMechanisms | |
|
20/05/2017 13:05:01 | View Folder in Explorer | CopiedFiles | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\RABANOSRV_20170520_130258\LiveResponseData\CopiedFiles | |
|
20/05/2017 13:05:01 | View Folder in Explorer | usnjrnl | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\RABANOSRV_20170520_130258\LiveResponseData\CopiedFiles\usnjrnl | |
|
20/05/2017 13:04:59 | View Folder in Explorer | mft | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\RABANOSRV_20170520_130258\LiveResponseData\CopiedFiles\mft | |
|
20/05/2017 13:04:53 | View Folder in Explorer | eventlogs | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\RABANOSRV_20170520_130258\LiveResponseData\CopiedFiles\eventlogs | |
|
20/05/2017 13:04:53 | View Folder in Explorer | Logs | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\RABANOSRV_20170520_130258\LiveResponseData\CopiedFiles\eventlogs\Logs | |
|
20/05/2017 13:04:45 | View Folder in Explorer | RABANOSRV_20170520_130258 | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response\RABANOSRV_20170520_130258 | |
|
20/05/2017 13:04:41 | View Folder in Explorer | Windows_Live_Response | E:\LiveResponseCollection-Bambiraptor\Windows_Live_Response | |
|
20/05/2017 13:03:19 | Software Installation | uninstall.exe | C:\Program Files\WinPcap\uninstall.exe | WinPcap 4.1.3 | exe
|
20/05/2017 13:03:18 | Software Installation | | | Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 |
|
20/05/2017 13:03:18 | Windows Installer Ended | | | |
|
20/05/2017 13:03:17 | Windows Installer Started | | | |
|
20/05/2017 13:03:13 | Windows Installer Ended | | | |
|
20/05/2017 13:03:04 | Windows Installer Started | | | |
|
20/05/2017 12:54:25 | User Logon | | | TUBERCULOLAB\antonio |
|
20/05/2017 12:52:01 | User Logon | | | TUBERCULOLAB\RABANOSRV$ |
|
20/05/2017 12:51:48 | System Started | | | |
|
20/05/2017 12:40:49 | System Shutdown | | | |
|
20/05/2017 12:40:48 | User Logoff | | | RABANOSRV\antonio |
|
20/05/2017 12:33:20 | View Folder in Explorer | LiveResponseCollection-Bambiraptor | E:\LiveResponseCollection-Bambiraptor | |
|
20/05/2017 12:33:16 | View Folder in Explorer | | E:\ | |
|
20/05/2017 11:53:15 | User Logon | | | TUBERCULOLAB\antonio |
|
20/05/2017 11:40:51 | User Logon | | | TUBERCULOLAB\RABANOSRV$ |
|
20/05/2017 11:40:39 | System Started | | | |
|
20/05/2017 11:38:34 | System Shutdown | | | |
|
20/05/2017 11:38:33 | User Logoff | | | RABANOSRV\antonio |
|
20/05/2017 11:14:34 | View Folder in Explorer | Datos | C:\Datos | |
|
20/05/2017 11:14:30 | View Folder in Explorer | TopSecret | C:\Datos\TopSecret | |
|
20/05/2017 11:02:21 | Open file or folder | Secreto | C:\Datos\Secreto | |
|
20/05/2017 11:02:21 | Open file or folder | RecetaSecreta.txt | C:\Datos\Secreto\RecetaSecreta.txt | | txt
|
20/05/2017 10:38:25 | System Started | | | |
|
20/05/2017 10:37:34 | System Shutdown | | | |
|
20/05/2017 9:37:26 | System Started | | | |
|
19/05/2017 20:39:01 | System Shutdown | | | |
|
19/05/2017 19:38:56 | System Started | | | |
|
19/05/2017 19:14:14 | System Shutdown | | | |
|
19/05/2017 18:14:10 | System Started | | | |
|
19/05/2017 17:21:02 | System Shutdown | | | |
|
19/05/2017 16:20:41 | System Started | | | |
|
05/05/2017 19:47:58 | System Shutdown | | | |
|
03/05/2017 23:15:37 | System Started | | | |
|
02/05/2017 14:38:07 | System Shutdown | | | |
|
02/05/2017 10:01:12 | System Started | | | |
|
29/04/2017 17:10:05 | System Shutdown | | | |
|
29/04/2017 10:08:18 | View Folder in Explorer | Secreto | C:\Datos\Secreto | |
|
29/04/2017 10:07:54 | View Folder in Explorer | Contabilidad | C:\Datos\Contabilidad | |
|
29/04/2017 9:54:51 | System Started | | | |
|
29/04/2017 3:05:06 | System Shutdown | | | |
|
29/04/2017 3:03:16 | System Started | | | |
|
28/04/2017 22:56:01 | System Shutdown | | | |
|
28/04/2017 19:38:27 | System Started | | | |
|
28/04/2017 19:37:59 | System Shutdown | | | |
|
28/04/2017 19:20:07 | System Started | | | |
|
28/04/2017 19:19:26 | System Shutdown | | | |
|
28/04/2017 19:19:22 | Windows Installer Ended | | | |
|
28/04/2017 19:18:37 | Windows Installer Started | | | |
|
28/04/2017 19:17:45 | Windows Installer Ended | | | |
|
28/04/2017 19:17:42 | Windows Installer Started | | | |
|
28/04/2017 19:17:39 | Windows Installer Ended | | | |
|
28/04/2017 19:17:36 | Software Installation | | | Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 |
|
28/04/2017 19:17:07 | Windows Installer Started | | | |
|
28/04/2017 19:16:34 | System Started | | | |
|
28/04/2017 19:16:02 | System Shutdown | | | |
|
28/04/2017 18:07:23 | System Started | | | |
|
10/04/2014 23:45:42 | System Shutdown | | | |
|
21/11/2010 4:34:57 | Software Installation | | | WIC |
|
14/07/2009 6:57:00 | Software Installation | | | DirectDrawEx |
|
14/07/2009 6:57:00 | Software Installation | | | Connection Manager |
|
14/07/2009 6:57:00 | Software Installation | | | IE40 |
|
14/07/2009 6:57:00 | Software Installation | | | Fontcore |
|
14/07/2009 6:57:00 | Software Installation | | | AddressBook |
|
14/07/2009 6:57:00 | Software Installation | | | SchedulingAgent |
|
14/07/2009 6:57:00 | Software Installation | | | MobileOptionPack |
|
14/07/2009 6:57:00 | Software Installation | | | IEData |
|
14/07/2009 6:57:00 | Software Installation | | | IE5BAKEX |
|
14/07/2009 6:57:00 | Software Installation | | | IE4Data |
|