What is ie_to_edge_bho_64.dll?
Sat Nov 26 2022 23:32:39 GMT+0000 (Coordinated Universal Time)
Saved by @frikke
[
{
"process_path": "C:\\Windows\\System32\\regsvr32.exe",
"process_name": "regsvr32.exe",
"pid": 856,
"summary": {
"file_opened": [
"C:\\Windows\\System32\\en-US\\KERNELBASE.dll.mui"
],
"regkey_opened": [
"HKEY_CLASSES_ROOT\\.dll",
"HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\dllfile\\AutoRegister",
"HKEY_CLASSES_ROOT\\dllfile"
],
"regkey_read": [
"HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows\\Windows Error Reporting\\WMR\\Disable",
"HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\GRE_Initialize\\DisableMetaFiles",
"HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\.dll\\(Default)"
],
"dll_loaded": [
"C:\\Users\\cuck\\AppData\\Local\\Temp\\b01932b1814e4c96f4add3bdca654cabb4f356b21069dbe234320c3dc353d1b7.bin.dll"
]
},
"first_seen": 1598133186.90625,
"ppid": 2800
},
{
"process_path": "C:\\Windows\\SysWOW64\\regsvr32.exe",
"process_name": "regsvr32.exe",
"pid": 2800,
"summary": {
"dll_loaded": [
"C:\\Users\\cuck\\AppData\\Local\\Temp\\b01932b1814e4c96f4add3bdca654cabb4f356b21069dbe234320c3dc353d1b7.bin.dll"
],
"file_opened": [
"C:\\Users\\cuck\\AppData\\Local\\Temp\\b01932b1814e4c96f4add3bdca654cabb4f356b21069dbe234320c3dc353d1b7.bin.dll"
],
"command_line": [
" C:\\Users\\cuck\\AppData\\Local\\Temp\\b01932b1814e4c96f4add3bdca654cabb4f356b21069dbe234320c3dc353d1b7.bin.dll"
],
"regkey_opened": [
"HKEY_CLASSES_ROOT\\.dll",
"HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\dllfile\\AutoRegister",
"HKEY_CLASSES_ROOT\\dllfile"
],
"file_read": [
"C:\\Users\\cuck\\AppData\\Local\\Temp\\b01932b1814e4c96f4add3bdca654cabb4f356b21069dbe234320c3dc353d1b7.bin.dll"
],
"regkey_read": [
"HKEY_LOCAL_MACHINE\\SOFTWARE\\Microsoft\\Windows NT\\CurrentVersion\\GRE_Initialize\\DisableMetaFiles",
"HKEY_LOCAL_MACHINE\\SOFTWARE\\Classes\\.dll\\(Default)"
]
},
"first_seen": 1598133186.671875,
"ppid": 2924
},
{
"process_path": "C:\\Windows\\System32\\lsass.exe",
"process_name": "lsass.exe",
"pid": 476,
"summary": {},
"first_seen": 1598133186.328125,
"ppid": 376
}
]



Comments