Guest User

Untitled

a guest
Jun 4th, 2014
426
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.11 KB | None | 0 0
  1. 2014/06/04 20:43:05 ossec-agent: INFO: Received exit signal.
  2. 2014/06/04 20:43:05 ossec-agent: INFO: Exiting...
  3. 2014/06/04 20:43:05 ossec-agent: Using notify time: 600 and max time to reconnect: 1800
  4. 2014/06/04 20:43:05 ossec-execd(1350): INFO: Active response disabled. Exiting.
  5. 2014/06/04 20:43:05 ossec-agent(1410): INFO: Reading authentication keys file.
  6. 2014/06/04 20:43:05 ossec-agent: INFO: No previous counter available for 'xp'.
  7. 2014/06/04 20:43:05 ossec-agent: INFO: Assigning counter for agent xp: '0:0'.
  8. 2014/06/04 20:43:05 ossec-agent: INFO: Assigning sender counter: 0:1062
  9. 2014/06/04 20:43:05 ossec-agent: INFO: Trying to connect to server (172.16.215.143:1514).
  10. 2014/06/04 20:43:05 ossec-agent: INFO: Using IPv4 for: 172.16.215.143 .
  11. 2014/06/04 20:43:05 ossec-agent: Starting syscheckd thread.
  12. 2014/06/04 20:43:05 ossec-rootcheck: INFO: Started (pid: 3020).
  13. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\batfile'.
  14. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\cmdfile'.
  15. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\comfile'.
  16. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\exefile'.
  17. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\piffile'.
  18. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\AllFilesystemObjects'.
  19. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\Directory'.
  20. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\Folder'.
  21. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Classes\Protocols'.
  22. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Policies'.
  23. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Security'.
  24. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer'.
  25. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Services'.
  26. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\Session Manager\KnownDLLs'.
  27. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\SecurePipeServers\winreg'.
  28. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run'.
  29. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce'.
  30. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnceEx'.
  31. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\URL'.
  32. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies'.
  33. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Windows'.
  34. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon'.
  35. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring registry entry: 'HKEY_LOCAL_MACHINE\Software\Microsoft\Active Setup\Installed Components'.
  36. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/win.ini'.
  37. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/system.ini'.
  38. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\autoexec.bat'.
  39. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\config.sys'.
  40. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\boot.ini'.
  41. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/CONFIG.NT'.
  42. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/AUTOEXEC.NT'.
  43. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/at.exe'.
  44. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/attrib.exe'.
  45. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/cacls.exe'.
  46. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/debug.exe'.
  47. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/drwatson.exe'.
  48. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/drwtsn32.exe'.
  49. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/edlin.exe'.
  50. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/eventcreate.exe'.
  51. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/eventtriggers.exe'.
  52. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/ftp.exe'.
  53. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/net.exe'.
  54. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/net1.exe'.
  55. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/netsh.exe'.
  56. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/rcp.exe'.
  57. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/reg.exe'.
  58. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/regedit.exe'.
  59. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/regedt32.exe'.
  60. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/regsvr32.exe'.
  61. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/rexec.exe'.
  62. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/rsh.exe'.
  63. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/runas.exe'.
  64. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/sc.exe'.
  65. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/subst.exe'.
  66. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/telnet.exe'.
  67. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/tftp.exe'.
  68. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/tlntsvr.exe'.
  69. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\WINDOWS/System32/drivers/etc'.
  70. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\Documents and Settings/All Users/Start Menu/Programs/Startup'.
  71. 2014/06/04 20:43:05 ossec-agent: INFO: Monitoring directory: 'C:\Users/Public/All Users/Microsoft/Windows/Start Menu/Startup'.
  72. 2014/06/04 20:43:05 ossec-agent: INFO: Started (pid: 3020).
Advertisement
Add Comment
Please, Sign In to add comment