Advertisement
Guest User

Untitled

a guest
Jul 20th, 2010
298
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.00 KB | None | 0 0
  1. 20:27:24,2164333 salamand.exe 884 CreateFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Desired Access: Read Attributes, Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
  2. 20:27:24,2166919 salamand.exe 884 QuerySecurityFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf BUFFER OVERFLOW Information: Owner, DACL
  3. 20:27:24,2167172 salamand.exe 884 QuerySecurityFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Information: Owner, DACL
  4. 20:27:24,2167385 salamand.exe 884 QueryNameInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Name: \Users\Dejan\Downloads\Opera\Hanh.pdf
  5. 20:27:24,2171205 salamand.exe 884 QuerySecurityFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf BUFFER OVERFLOW Information: Owner, Group, DACL
  6. 20:27:24,2171385 salamand.exe 884 QuerySecurityFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Information: Owner, Group, DACL
  7. 20:27:24,2171571 salamand.exe 884 QueryBasicInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS CreationTime: 18.01.2010 16:28:10, LastAccessTime: 20.07.2010 20:20:21, LastWriteTime: 18.01.2010 16:28:10, ChangeTime: 20.07.2010 20:20:22, FileAttributes: A
  8. 20:27:24,2172193 salamand.exe 884 CloseFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS
  9. 20:27:24,2177251 salamand.exe 884 QueryOpen C:\Users\Dejan\Downloads\Opera\Hanh.pdf FAST IO DISALLOWED
  10. 20:27:24,2179281 salamand.exe 884 CreateFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
  11. 20:27:24,2179950 salamand.exe 884 QueryBasicInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS CreationTime: 18.01.2010 16:28:10, LastAccessTime: 20.07.2010 20:20:21, LastWriteTime: 18.01.2010 16:28:10, ChangeTime: 20.07.2010 20:20:22, FileAttributes: A
  12. 20:27:24,2180103 salamand.exe 884 CloseFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS
  13. 20:27:24,2189221 salamand.exe 884 QueryOpen C:\Users\Dejan\Downloads\Opera\Hanh.pdf FAST IO DISALLOWED
  14. 20:27:24,2190855 salamand.exe 884 CreateFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Desired Access: Read Attributes, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
  15. 20:27:24,2191517 salamand.exe 884 QueryBasicInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS CreationTime: 18.01.2010 16:28:10, LastAccessTime: 20.07.2010 20:20:21, LastWriteTime: 18.01.2010 16:28:10, ChangeTime: 20.07.2010 20:20:22, FileAttributes: A
  16. 20:27:24,2191664 salamand.exe 884 CloseFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS
  17. 20:27:56,5690230 SearchProtocolHost.exe 4816 CreateFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Open Reparse Point, Open Requiring Oplock, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
  18. 20:27:56,5726808 SearchProtocolHost.exe 4816 CreateFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Complete If Oplocked, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
  19. 20:27:56,5744755 SearchProtocolHost.exe 4816 QueryFileInternalInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS IndexNumber: 0x1500000001d45d
  20. 20:27:56,5745107 SearchProtocolHost.exe 4816 CloseFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS
  21. 20:27:56,5746951 SearchProtocolHost.exe 4816 FileSystemControl C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Control: FSCTL_REQUEST_FILTER_OPLOCK
  22. 20:27:56,5747210 SearchProtocolHost.exe 4816 QueryStandardInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS AllocationSize: 8.060.928, EndOfFile: 8.057.894, NumberOfLinks: 1, DeletePending: False, Directory: False
  23. 20:27:56,5747433 SearchProtocolHost.exe 4816 QueryBasicInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS CreationTime: 18.01.2010 16:28:10, LastAccessTime: 20.07.2010 20:20:21, LastWriteTime: 18.01.2010 16:28:10, ChangeTime: 20.07.2010 20:20:22, FileAttributes: A
  24. 20:27:56,5748066 SearchProtocolHost.exe 4816 QueryFileInternalInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS IndexNumber: 0x1500000001d45d
  25. 20:27:56,5748385 SearchProtocolHost.exe 4816 FileSystemControl C:\Users\Dejan\Downloads\Opera\Hanh.pdf NOT REPARSE POINT Control: FSCTL_GET_REPARSE_POINT
  26. 20:27:56,6966780 SearchProtocolHost.exe 4816 QuerySecurityFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf BUFFER OVERFLOW Information: Owner, Group, DACL
  27. 20:27:56,6967150 SearchProtocolHost.exe 4816 QuerySecurityFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Information: Owner, Group, DACL
  28. 20:27:56,6967386 SearchProtocolHost.exe 4816 QueryNameInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Name: \Users\Dejan\Downloads\Opera\Hanh.pdf
  29. 20:27:56,6972647 SearchProtocolHost.exe 4816 QueryBasicInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS CreationTime: 18.01.2010 16:28:10, LastAccessTime: 20.07.2010 20:20:21, LastWriteTime: 18.01.2010 16:28:10, ChangeTime: 20.07.2010 20:20:22, FileAttributes: A
  30. 20:27:56,6977638 SearchProtocolHost.exe 4816 CreateFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Desired Access: Generic Read, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Attributes: N, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
  31. 20:27:56,6979359 SearchProtocolHost.exe 4816 CreateFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Desired Access: Read Data/List Directory, Synchronize, Disposition: Open, Options: Synchronous IO Non-Alert, Non-Directory File, Complete If Oplocked, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
  32. 20:27:56,6980174 SearchProtocolHost.exe 4816 QueryFileInternalInformationFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS IndexNumber: 0x1500000001d45d
  33. 20:27:56,6980427 SearchProtocolHost.exe 4816 CloseFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS
  34. 20:27:58,4935991 SearchProtocolHost.exe 4816 CreateFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Desired Access: Read Attributes, Read Control, Disposition: Open, Options: Open Reparse Point, Attributes: n/a, ShareMode: Read, Write, Delete, AllocationSize: n/a, OpenResult: Opened
  35. 20:27:58,4936909 SearchProtocolHost.exe 4816 QuerySecurityFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf BUFFER OVERFLOW Information: Owner
  36. 20:27:58,4937159 SearchProtocolHost.exe 4816 QuerySecurityFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS Information: Owner
  37. 20:27:58,4937332 SearchProtocolHost.exe 4816 CloseFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS
  38. 20:27:58,6174419 SearchProtocolHost.exe 4816 CloseFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS
  39. 20:27:58,6180572 SearchProtocolHost.exe 4816 CloseFile C:\Users\Dejan\Downloads\Opera\Hanh.pdf SUCCESS
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement