HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\21\5F561C63\\@%systemroot%\system32\FirewallControlPanel.dll,-12122
new registry key parameter created
%TMP%\nss987E.tmp
new file created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\nsd120F.tmp
new file created
%TMP%\~nsuA.tmp
new catalogue created
%TEMP%\~nsuA.tmp\Un_A.exe
new file created
%TMP%\~nsuA.tmp\Un_A.exe
new file created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\nsu14DE.tmp
new file created
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Session Manager\\PendingFileRenameOperations
new registry key parameter created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\nsk14EF.tmp
new file created
%TMP%\nst9969.tmp
new file created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\nsk14EF.tmp
new catalogue created
%TMP%\nsi9979.tmp
new file created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\nsk14EF.tmp\System.dll
new file created
%TMP%\nsi9979.tmp
new catalogue created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\nsk14EF.tmp\UAC.dll
new file created
%TMP%\nsi9979.tmp\System.dll
new file created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\nsk14EF.tmp\modern-wizard.bmp
new file created
%TMP%\nsi9979.tmp\UAC.dll
new file created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\nsk14EF.tmp\nsDialogs.dll
new file created
%TMP%\nsi9979.tmp\modern-wizard.bmp
new file created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\nsk14EF.tmp\INetC.dll
new file created
%TMP%\nsi9979.tmp\nsDialogs.dll
new file created
%SystemDrive%\Users\BOLADA~1\AppData\Local\Temp\utweb_install.log
new file created
%TMP%\nsi9979.tmp\FindProcDLL.dll
new file created
%TMP%\nsi9979.tmp\nsisFirewall.dll
new file created
%TMP%\nsi9979.tmp\INetC.dll
new file created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASAPI32
new registry key created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASAPI32\\EnableFileTracing
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASAPI32\\EnableConsoleTracing
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASAPI32\\FileTracingMask
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASAPI32\\ConsoleTracingMask
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASAPI32\\MaxFileSize
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASAPI32\\FileDirectory
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASMANCS
new registry key created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASMANCS\\EnableFileTracing
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASMANCS\\EnableConsoleTracing
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASMANCS\\FileTracingMask
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASMANCS\\ConsoleTracingMask
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASMANCS\\MaxFileSize
new registry key parameter created
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Tracing\Un_A_RASMANCS\\FileDirectory
new registry key parameter created
%LOCALAPPDATA%\Microsoft\Windows\Temporary Internet Files\Content.IE5\3S3G00PR\e[1].htm
new file created
%LOCALAPPDATA%\Microsoft\Windows\Temporary Internet Files\Content.IE5\6YG4P92M\e[1].htm
new file created
%TMP%\~nsuA.tmp\OK
new file created
%LOCALAPPDATA%Low\Microsoft\CryptnetUrlCache\MetaData\EB2C4AB8B68FFA4B7733A9139239A396_D76DB901EE986B889F30D8CC06229E2D
new file created
%LOCALAPPDATA%Low\Microsoft\CryptnetUrlCache\Content\EB2C4AB8B68FFA4B7733A9139239A396_D76DB901EE986B889F30D8CC06229E2D
new file created
%LOCALAPPDATA%Low\Microsoft\CryptnetUrlCache\MetaData\223DE96EE265046957A660ED7C9DD9E7_EFF9B9BA98DEAA773F261FA85A0B1771
new file created
%LOCALAPPDATA%Low\Microsoft\CryptnetUrlCache\Content\223DE96EE265046957A660ED7C9DD9E7_EFF9B9BA98DEAA773F261FA85A0B1771
new file created
%LOCALAPPDATA%Low\Microsoft\CryptnetUrlCache\MetaData\928BEEFA609053F205E5FDD769FADAE9_87B0E007497F364B73B12596DD699E93
new file created
%LOCALAPPDATA%Low\Microsoft\CryptnetUrlCache\Content\928BEEFA609053F205E5FDD769FADAE9_87B0E007497F364B73B12596DD699E93
new file created
%APPDATA%\Microsoft\Windows\Cookies\adilson@surveymonkey[1].txt
new file created
%APPDATA%\Microsoft\Windows\Cookies\adilson@surveymonkey[2].txt
new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\30\67BDC06\\@%systemroot%\system32\FirewallControlPanel.dll,-12122
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\3c
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\3c\67BDC06
new registry key created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\3c\67BDC06\\@%SystemRoot%\system32\dnsapi.dll,-103
new registry key parameter created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\3c\67BDC06\\@%SystemRoot%\system32\WindowsPowerShell\v1.0\powershell.exe,-124
new registry key parameter created
%TMP%\nsb74F7.tmp
new file created
%TMP%\~nsu.tmp\Un_A.exe
new file created
%TMP%\nsc75E2.tmp
new file created
%TMP%\nsc75E3.tmp
new file created
%TMP%\nsc75E3.tmp
new catalogue created
%TMP%\nsc75E3.tmp\System.dll
new file created
%TMP%\nsc75E3.tmp\UAC.dll
new file created
%TMP%\nsd84B7.tmp
new file created
%TMP%\nsd84B8.tmp
new file created
%TMP%\nsd84B8.tmp
new catalogue created
%TMP%\nsd84B8.tmp\System.dll
new file created
%TMP%\nsd84B8.tmp\UAC.dll
new file created
%TMP%\nsd84B8.tmp\modern-wizard.bmp
new file created
%TMP%\nsd84B8.tmp\nsDialogs.dll
new file created
HKEY_USERS\%ID-USER-SID%_Classes\Local Settings\MuiCache\142\63C768CF\\@%systemroot%\system32\FirewallControlPanel.dll,-12122
new registry key parameter created
%TMP%\nsd84B8.tmp\FindProcDLL.dll
new file created
%TMP%\nsd84B8.tmp\nsisFirewall.dll
new file created
%TMP%\nsd84B8.tmp\INetC.dll
new file created