Malware Log Analysis

shared / Doctore_Oenomaus
content copied

content

Start CreateRestorePoint: CloseProcesses: HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION 2024-01-26 21:04 - 2024-01-26 21:04 - 000000000 _____ () C:\Users\jsnip\test.js 2026-05-23 03:05 - 2025-12-14 11:02 - 000000000 ____D C:\ProgramData\temp HKU\S-1-5-21-3657836926-1678181867-2864478933-1002\Software\Classes\regfile: <==== ATTENTION Zip: C:\FRST\Quarantine\C\Users\jsnip\uw.exe;C:\FRST\Quarantine\C\Users\jsnip\vi.exe;C:\FRST\Quarantine\C\Users\jsnip\sx.exe End